Vendorscontrolled-merge Projectcontrolled-mergeany version
Vulnerabilities

controlled-merge Project controlled-merge any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2020-28268
Prototype pollution vulnerability in 'controlled-merge' versions 1.0.0 through 1.2.0 allows attacker to cause a denial of service and may lead to remote code execution.
Published 2020-11-15 · Modified
7.5EPSS 0.036