flat
21 known vulnerabilities · 4 critical · 1 high
Sveltejs devalue's `devalue.parse` and `devalue.unflatten` emit objects with `__proto__` own properties
Undici has Unbounded Memory Consumption in WebSocket permessage-deflate Decompression
Malicious code in model-flattening (npm)
devalue has prototype pollution in devalue.parse and devalue.unflatten
Malicious code in bfx-facs-deflate (npm)
Malicious code in flat-surface-shader (npm)
Malicious code in yarn-design-system-flatpickr (npm)
Malicious code in eslint8_flat_config_mjs (npm)
Underscore has unlimited recursion in _.flatten and _.isEqual, potential for DoS attack
PDFME Affected by Decompression Bomb in FlateDecode Stream Parsing Causes Memory Exhaustion DoS
Malicious code in flow-inflation-client (npm)
Malicious code in flatten-unflatten (npm)
flatted vulnerable to unbounded recursion DoS in parse() revive phase