{ "id": "openEuler-SA-2022-1665", "url": "https://www.openeuler.org/zh/security/security-bulletins/detail/?id=openEuler-SA-2022-1665", "title": "An update for nodejs-minimist is now available for openEuler-20.03-LTS-SP1, openEuler-20.03-LTS-SP3 and openEuler-22.03-LTS", "severity": "Medium", "description": "This module is the guts of optimist's argument parser without all the fanciful decoration.\n\nSecurity Fix(es):\n\nMinimist <=1.2.5 is vulnerable to Prototype Pollution via file index.js, function setKey() (lines 69-95).(CVE-2021-44906)", "cves": [ { "id": "CVE-2021-44906", "url": "https://nvd.nist.gov/vuln/detail/CVE-2021-44906", "severity": "Medium" } ] }