Prototype pollution vulnerability in 'changeset' versions 0.0.1 through 0.2.5 allows an attacker to cause a denial of service and may lead to remote code execution.
{
"cpe": "cpe:2.3:a:changeset_project:changeset:*:*:*:*:*:node.js:*:*",
"extracted_events": [
{
"introduced": "0.0.1"
},
{
"fixed": "0.2.6"
}
],
"source": [
"CPE_RANGE",
"REFERENCES"
]
}