CVE-2023-26113

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/03/2023
Last modified:
07/11/2023

Description

Versions of the package collection.js before 6.8.1 are vulnerable to Prototype Pollution via the extend function in Collection.js/dist/node/iterators/extend.js. <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:collection.js_project:collection.js:*:*:*:*:*:node.js:*:* 6.8.1 (excluding)