CVE-2021-44906

Minimist <=1.2.5 is vulnerable to Prototype Pollution via file index.js, function setKey() (lines 69-95).

  • Published Mar 17, 2022
  • CVSS 9.8 critical
  • 4.6% chance of exploitation in the next 30 days (EPSS)
  • Public exploit code is available
  • A fix is available

In the news

CVE-2021-44906 at the National Vulnerability Database