Security Advisory
CVE-2018-16486
9.8
CRITICAL
Vulnerability Description
A prototype pollution vulnerability was found in defaults-deep <=0.2.4 that would allow a malicious user to inject properties onto Object.prototype.
Published Date
February 1, 2019
Official Source
NIST NVD Advisory