6.0.0-alpha.1
11 years ago
2 months ago
Known vulnerabilities in the node-cube package. This does not include vulnerabilities belonging to this package’s dependencies.
Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.
Fix for free| Vulnerability | Vulnerable Version |
|---|---|
node-cube is an a new way to write js in browser Affected versions of this package are vulnerable to Prototype Pollution via the resource initialization process. An attacker can inject properties into the prototype of built-in objects by supplying crafted input, potentially leading to denial of service or execution of arbitrary code. How to fix Prototype Pollution? There is no fixed version for | * |