1.1.0
8 years ago
2 years ago
Known vulnerabilities in the cached-path-relative package. This does not include vulnerabilities belonging to this package’s dependencies.
Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for freeVulnerability | Vulnerable Version |
---|---|
cached-path-relative is a memoize the results of the path.relative function. Affected versions of this package are vulnerable to Prototype Pollution via the Note: This vulnerability derives from an incomplete fix in https://security.snyk.io/vuln/SNYK-JS-CACHEDPATHRELATIVE-72573 ###PoC
How to fix Prototype Pollution? Upgrade | <1.1.0 |
cached-path-relative is a memoize the results of the path.relative function. Affected versions of this package are vulnerable to Prototype Pollution. An attacker could inject properties on How to fix Prototype Pollution? Upgrade | <1.0.2 |