parse-git-config icon indicating copy to clipboard operation
parse-git-config copied to clipboard

fix: prevent prototype pollution on expandKeys

Open stavros-tsioulis opened this issue 10 months ago • 3 comments

Closes #14

stavros-tsioulis avatar Mar 17 '25 20:03 stavros-tsioulis

Should we consider forking the library to address the vulnerability?

artem-beresnev-gyg avatar Mar 19 '25 09:03 artem-beresnev-gyg

@jonschlinkert forgive the ping but given it’s a vuln it might be important to address this in a timely manner

stavros-tsioulis avatar Mar 19 '25 09:03 stavros-tsioulis

Any chance this can be merged?

AlbertGazizov avatar Apr 07 '25 10:04 AlbertGazizov