keyd@1.3.4 vulnerabilities

A small library for using and manipulating key path in JavaScript.

Direct Vulnerabilities

Known vulnerabilities in the keyd package. This does not include vulnerabilities belonging to this package’s dependencies.

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.
Fix for free
Vulnerability Vulnerable Version
  • H
Prototype Pollution

keyd is an a small library for using and manipulating key paths in JavaScript.

Affected versions of this package are vulnerable to Prototype Pollution. It allows an attacker to inject properties on Object.prototype.

How to fix Prototype Pollution?

Upgrade keyd to version 1.4.3 or higher.

<1.4.3