This affects all versions of package Proto. It is possible to inject pollute the object property of an application using Proto by leveraging the merge function.
References
Link | Resource |
---|---|
https://snyk.io/vuln/SNYK-JS-PROTO-1316301 | Exploit Mitigation Third Party Advisory |
https://www.npmjs.com/package/Proto | Product Third Party Advisory |
Configurations
Information
Published : 2021-09-01 08:15
Updated : 2021-09-09 12:02
NVD link : CVE-2021-23426
Mitre link : CVE-2021-23426
JSON object : View
CWE
Products Affected
proto_project
- proto