Vendorscontrolled-merge Projectcontrolled-mergeall versions
Vulnerabilities

controlled-merge Project controlled-merge

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2020-28268
Prototype pollution vulnerability in 'controlled-merge' versions 1.0.0 through 1.2.0 allows attacker to cause a denial of service and may lead to remote code execution.
Published 2020-11-15 · Modified
7.5EPSS 0.036