@rpldy/uploady is vulnerable to Prototype Pollution
72
High Risk
Affected versions of this package are affected by a design flaw that arises from improper handling of objects, particularly during the merging, cloning, or validation of plain objects. This flaw can allow attackers to modify an object's prototype by injecting or manipulating its properties. As a result, this can lead to unexpected behavior in all objects, potentially allowing attackers to bypass security checks and escalate their privileges.
You are affected if you are using a version that falls within the vulnerable range.
@rpldy/uploady is vulnerable to Prototype Pollution in versions 1.0.17 - 1.9.0.
Upgrade the @rpldy/uploady library to the patch version.
Secure your code, cloud, and runtime environments in one central system. Find and fix vulnerabilities automatically.
No credit card required | Scan results in 32secs.
SOC 2Compliant
ISO 27001Compliant