Описание
akbr patch-into was discovered to contain a prototype pollution via the function patchInto
akbr patch-into version 1.0.1 was discovered to contain a prototype pollution via the function patchInto. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.
Пакеты
Наименование
@akbr/patch-into
npm
Затронутые версииВерсия исправления
= 1.0.1
Отсутствует
Связанные уязвимости
CVSS3: 8.8
nvd
больше 1 года назад
akbr patch-into v1.0.1 was discovered to contain a prototype pollution via the function patchInto. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.