Releases29
Frequency6 months 1 week
Last Release
Apple's property list parser/builder for Node.js and browsers

CVE History

CVEAffectedPublishedCVSS v3CVSS v2
< 3.0.6, < 3.0.59.8 CRITICAL7.5 HIGH

Prototype pollution vulnerability via .parse() in Plist before v3.0.4 allows attackers to cause a Denial of Service (DoS) and may lead to remote code execution.