Skip to content

CVE-2025-13465 Lodash versions 4.0.0 through 4.17.22 are vulnerable to prototype pollution in the _.unset and _.omit functions.#954

Merged
maximthomas merged 1 commit intoOpenIdentityPlatform:masterfrom
maximthomas:issues/cve-2025-13465
Jan 27, 2026
Merged

CVE-2025-13465 Lodash versions 4.0.0 through 4.17.22 are vulnerable to prototype pollution in the _.unset and _.omit functions.#954
maximthomas merged 1 commit intoOpenIdentityPlatform:masterfrom
maximthomas:issues/cve-2025-13465

Conversation

@maximthomas
Copy link
Copy Markdown
Contributor

No description provided.

@maximthomas maximthomas requested a review from vharseko January 27, 2026 09:43
@maximthomas maximthomas merged commit 2372616 into OpenIdentityPlatform:master Jan 27, 2026
13 checks passed
@maximthomas maximthomas deleted the issues/cve-2025-13465 branch January 27, 2026 11:01
maximthomas added a commit to maximthomas/OpenAM that referenced this pull request Mar 30, 2026
…o prototype pollution in the _.unset and _.omit functions. (OpenIdentityPlatform#954)
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants