The package bmoor before 0.10.1 is vulnerable to Prototype Pollution due to missing sanitization in set function. Note: This vulnerability derives from an incomplete fix in CVE-2020-7736
{
"nvd_published_at": "2022-01-28T22:15:00Z",
"github_reviewed_at": "2022-01-31T20:51:31Z",
"cwe_ids": [
"CWE-1321"
],
"severity": "HIGH",
"github_reviewed": true
}