A Prototype Pollution issue in Blackprint @blackprint/engine v.0.9.0 allows an attacker to execute arbitrary code via the _utils.setDeepProperty function of engine.min.js.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| @blackprint/engine(npm) | 0.8.12 | 0.9.2 | N/A |
CVSS Metrics