Severity: Critical
CVSS Score: 9.8
npm package parse-ini v1.0.6 is vulnerable to Prototype Pollution in index.js().