A prototype pollution vulnerability was found in defaults-deep <=0.2.4 that would allow a malicious user to inject properties onto…
hackerone·CWE-400·Published 2019-02-01