Recursively merge values in a javascript object.
76%
Total Score
31
100
100
100
50
| Title | Versions | Severity |
|---|---|---|
CVE-2021-26707 merge-deep is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in versions 0.0.0 - 3.0.3. | 0.0.0 - 3.0.3 | Critical |
CVE-2018-3722 merge-deep is vulnerable to Modification of Assumed-Immutable Data (MAID) in versions 0.0.0 - 3.0.1. | 0.0.0 - 3.0.1 | High |
| Dependency | Last Release | Score |
|---|---|---|
kind-of Version ^3.0.2 | — | — |
arr-union Version ^3.1.0 | — | — |
clone-deep Version ^0.2.4 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant