Review reviewCritical
CVE-2022-37257
steal
Prototype pollution vulnerability in function convertLater in npm-convert.js in stealjs steal 2.2.4 via the requestedVersion variable in npm-convert.js.
- CVSS
- 9.8
- EPSS
- 1.09% 62.3% percentile
- CISA KEV
- Not listed
- Published
- 2022.09.15