Prototype Pollution in immer
high severity
Published
Jan 20, 2021
Package
immer
(npm)
Affected versions
< 8.0.1
Patched versions
8.0.1
Description
CVE ID
CVE-2020-28477


Overview
Affected versions of immer are vulnerable to Prototype Pollution.
Proof of exploit
Remediation
Version 8.0.1 contains a fix for this vulnerability, updating is recommended.
References