Security Advisory
CVE-2021-43138
7.8
HIGH
Vulnerability Description
In Async before 2.6.4 and 3.x before 3.2.2, a malicious user can obtain privileges via the mapValues() method, aka lib/internal/iterator.js createObjectIterator prototype pollution.
Published Date
April 6, 2022
Official Source
NIST NVD Advisory