Описание
Prototype pollution in izatop bunt
izatop bunt v0.29.19 was discovered to contain a prototype pollution via the component /esm/qs.js. This vulnerability allows attackers to execute arbitrary code via injecting arbitrary properties.
Пакеты
Наименование
@bunt/app
npm
Затронутые версииВерсия исправления
< 0.29.26
0.29.26
Связанные уязвимости
CVSS3: 9.8
nvd
больше 1 года назад
izatop bunt v0.29.19 was discovered to contain a prototype pollution via the component /esm/qs.js. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.