Js-dataCVEs & Vulnerabilities
2 CVEs affecting Js-data products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
js-data 2
CVE-2021-23574CRITICAL
All versions of package js-data are vulnerable to Prototype Pollution via the deepFillIn and the set functions. This is an incomplete fix of [CVE-2020-28442](https://snyk.io/vuln/SNYK-JS-JSDATA-1023655).
24 Dec 2021
9.8
CVSS
CVE-2020-28442CRITICAL
All versions of package js-data are vulnerable to Prototype Pollution via the deepFillIn function.
15 Dec 2020
9.8
CVSS
← PrevPage 1 / 1Next →