Releases53
Frequency4 weeks 1 day
Last Release
File-based embedded data store for node.js

CVE History

CVEAffectedPublishedCVSS v3CVSS v2
all versions, <= 1.8.07.3 HIGH5 MEDIUM

This affects all versions of package nedb. The library could be tricked into adding or modifying properties of Object.prototype using a __proto__ or constructor.prototype payload.