Prototype pollution vulnerability in function convertLater in npm-convert.js in stealjs steal 2.2.4 via the packageName variable in npm-convert.js.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-37258.json"