@stryker-mutator/util vulnerable to Prototype Pollution
        
  High severity
        
          GitHub Reviewed
      
        Published
          Feb 6, 2025 
          to the GitHub Advisory Database
          •
          Updated Aug 5, 2025 
      
  
Description
        Published by the National Vulnerability Database
      Feb 5, 2025 
    
  
        Published to the GitHub Advisory Database
      Feb 6, 2025 
    
  
        Reviewed
      Aug 5, 2025 
    
  
        Last updated
      Aug 5, 2025 
    
  
A prototype pollution in the function deepMerge of @stryker-mutator/util v8.6.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.
References