Skip to content

Critical vulnerability in simple-plist package (Prototype Pollution using .parse()) #124

@Sujay-shetty

Description

@Sujay-shetty

Hi,

There is a critical vulnerability found in plist which is used in simple-plist. According to below commit this has been fixed in plist and simple-plist.

wollardj/simple-plist#60

Could you please update simple-plist package to 1.3.1 version

Thanks,
Sujay

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions