Skip to content

Fix prototype pollution in safeSet / evaluate other weaknesses #1

@typhonrt

Description

@typhonrt

safeSet doesn't evaluate protected accessor keys and allows prototype pollution. A bug / issue, but not severe.

See fuzz / example from long abandoned version of this package.
typhonjs-node-utils/typhonjs-object-util#1

Pinging issue reporter @cstimkong for credit.

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions