Eljoy / ts-jackson

A typescript library to deserialize and serialize json into classes. You can use different path pattern to resolve deeply nested structures. Every path pattern provided by lodash/get|set object is supported. Check out src/examples as a reference.
https://www.npmjs.com/package/ts-jackson
MIT License
23 stars 2 forks source link

Vulnerability - loadash.set - Prototype pollution #4

Closed GaelCO closed 5 months ago

GaelCO commented 12 months ago

Hi,

The dependency loadash.set 4.3.2 has a "prototype pollution" vulnerabilty

Eljoy commented 5 months ago

@GaelCO thx, this is fixed in 1.7.0