The package bmoor before 0.8.12 are vulnerable to Prototype Pollution via the set function.
References
Link | Resource |
---|---|
https://github.com/b-heilman/bmoor/commit/7d4a086a1dc3ef11ed0b323824d02348734b7da5 | Patch Third Party Advisory |
https://snyk.io/vuln/SNYK-JS-BMOOR-598664 | Exploit Third Party Advisory |
Configurations
Information
Published : 2020-10-02 03:15
Updated : 2022-12-02 11:47
NVD link : CVE-2020-7736
Mitre link : CVE-2020-7736
JSON object : View
CWE
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
Products Affected
bmoor_project
- bmoor