JsData is a JavaScript data-management library with a narrow product scope but positioned within web application ecosystems where it handles structured data operations. The vulnerability footprint observed reflects typical web library exposure patterns. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Js Data over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-23574CRITICAL All versions of package js-data are vulnerable to Prototype Pollution via the deepFillIn and the set functions. This is an incomplete fix of [CVE-2020-28442](https://snyk.io/vuln/S | Dec 24, 2021 | 9.8 | 32 | NO | NO |
CVE-2020-28442CRITICAL All versions of package js-data are vulnerable to Prototype Pollution via the deepFillIn function. | Dec 15, 2020 | 9.8 | 31 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Js Data.
Media articles that mention a CVE ID that affects a product developed by Js Data — matched by CVE ID, not by vendor name.