Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5727-r6pv-59f5

Опубликовано: 09 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 2.1
CVSS3: 4.3

Описание

A security flaw has been discovered in enquirer up to 2.4.1. Affected is the function Enquirer.set of the component Public Package API. The manipulation of the argument question.name results in improperly controlled modification of object prototype attributes. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report.

A security flaw has been discovered in enquirer up to 2.4.1. Affected is the function Enquirer.set of the component Public Package API. The manipulation of the argument question.name results in improperly controlled modification of object prototype attributes. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report.

EPSS

Процентиль: 16%
0.00248
Низкий

2.1 Low

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 4.3
redhat
около 1 месяца назад

A security flaw has been discovered in enquirer up to 2.4.1. Affected is the function Enquirer.set of the component Public Package API. The manipulation of the argument question.name results in improperly controlled modification of object prototype attributes. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report.

CVSS3: 4.3
nvd
около 1 месяца назад

A security flaw has been discovered in enquirer up to 2.4.1. Affected is the function Enquirer.set of the component Public Package API. The manipulation of the argument question.name results in improperly controlled modification of object prototype attributes. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report.

EPSS

Процентиль: 16%
0.00248
Низкий

2.1 Low

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-94