Vulnerability Details CVE-2021-23700
All versions of package merge-deep2 are vulnerable to Prototype Pollution via the mergeDeep() function.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 64.0%
CVSS Severity
CVSS v3 Score 6.5
CVSS v2 Score 7.5
Products affected by CVE-2021-23700
-
cpe:2.3:a:merge-deep2_project:merge-deep2:*