A prototype pollution in the lib.deepMerge function of ...
Unreviewed
Published
Feb 6, 2025
to the GitHub Advisory Database
•
Updated Feb 6, 2025
Description
Published by the National Vulnerability Database
Feb 5, 2025
Published to the GitHub Advisory Database
Feb 6, 2025
Last updated
Feb 6, 2025
A prototype pollution in the lib.deepMerge function of @zag-js/core v0.50.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.
References