Launchpad.net

CVE 2020-7608

yargs-parser could be tricked into adding or modifying properties of Object.prototype using a "__proto__" payload.

See the CVE page on Mitre.org for more details.

References