Vulnerabilities > Eggjs > Extend2

DATE CVE VULNERABILITY TITLE RISK
2022-01-10 CVE-2021-23568 Unspecified vulnerability in Eggjs Extend2 1.0.0
The package extend2 before 1.0.1 are vulnerable to Prototype Pollution via the extend function due to unsafe recursive merge.
network
low complexity
eggjs
7.5