Skip to content

Conversation

@github-actions
Copy link

Vulnerabilities associated with nconf/0.6.9

BDSA-2022-1164 (HIGH): nconf is vulnerable to prototype pollution due to insufficient input validation within the memory engine. This could allow an attacker to maliciously modify object prototypes, which depending on how objects are used by an application, could cause impacts such as denial-of-service (DoS), cross-site scripting (XSS) or remote code execution (RCE).

Click Here To See More Details On Server

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant