Описание
The package min-dash before 3.8.1 are vulnerable to Prototype Pollution via the set method due to missing enforcement of key types.
Ссылки
- Broken LinkThird Party Advisory
- PatchThird Party Advisory
- PatchThird Party Advisory
- ExploitMitigationPatchThird Party Advisory
- ExploitMitigationPatchThird Party Advisory
- Broken LinkThird Party Advisory
- PatchThird Party Advisory
- PatchThird Party Advisory
- ExploitMitigationPatchThird Party Advisory
- ExploitMitigationPatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.8.1 (исключая)
cpe:2.3:a:camunda:min-dash:*:*:*:*:*:*:*:*
EPSS
Процентиль: 67%
0.00542
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-1321
Связанные уязвимости
EPSS
Процентиль: 67%
0.00542
Низкий
7.5 High
CVSS3
5 Medium
CVSS2
Дефекты
CWE-1321