Vulnerabilities > Json8 Merge Patch Project

DATE CVE VULNERABILITY TITLE RISK
2020-11-09 CVE-2020-8268 Improper Input Validation vulnerability in Json8-Merge-Patch Project Json8-Merge-Patch
Prototype pollution vulnerability in json8-merge-patch npm package < 1.0.3 may allow attackers to inject or modify methods and properties of the global object constructor.
network
low complexity
json8-merge-patch-project CWE-20
5.0