Candidate: CVE-2021-3805 PublicDate: 2021-09-17 06:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-3805 https://huntr.dev/bounties/571e3baf-7c46-46e3-9003-ba7e4e623053 https://github.com/mariocasciaro/object-path/commit/e6bb638ffdd431176701b3e9024f80050d0ef0a6 Description: object-path is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_node-object-path: upstream_node-object-path: needs-triage trusty_node-object-path: ignored (out of standard support) trusty/esm_node-object-path: DNE xenial_node-object-path: ignored (out of standard support) bionic_node-object-path: needs-triage focal_node-object-path: needs-triage hirsute_node-object-path: ignored (reached end-of-life) impish_node-object-path: needs-triage jammy_node-object-path: needs-triage devel_node-object-path: needs-triage