reddit hackernews mail facebook facebook linkedin
prototype-pollution-exploits

prototype-pollution-exploits

Prototype Pollution exploits collection.

The goal of this project is to collect every possible exploits for popular packages and all possible variations – build a dataset for future Prototype Pollution research:
lodash, set-value, dot-prop, merge, deepmerge, merge-deep, object-path, extend, just-safe-set, dset
and more...

Additionally, each package folder has an MD file with exploits and list of vulnerable versions.