Prototype pollution vulnerability in 'putil-merge' versions1.0.0 through 3.6.6 allows attacker to cause a denial of service and may lead to remote code execution.
References
Link | Resource |
---|---|
https://www.whitesourcesoftware.com/vulnerability-database/CVE-2021-25953 | Exploit Third Party Advisory |
Configurations
Information
Published : 2021-07-14 04:15
Updated : 2021-07-15 16:49
NVD link : CVE-2021-25953
Mitre link : CVE-2021-25953
JSON object : View
CWE
Products Affected
putil-merge_project
- putil-merge