Security Advisory

CVE-2022-25907

7.5
HIGH

Vulnerability Description

The package ts-deepmerge before 2.0.2 are vulnerable to Prototype Pollution due to missing sanitization of the merge function.
Published Date August 9, 2022
Official Source NIST NVD Advisory