Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-21489

Опубликовано: 01 окт. 2024
Источник: nvd
CVSS3: 8.2
EPSS Низкий

Описание

Versions of the package uplot before 1.6.31 are vulnerable to Prototype Pollution via the uplot.assign function due to missing check if the attribute resolves to the object prototype.

EPSS

Процентиль: 37%
0.00159
Низкий

8.2 High

CVSS3

Дефекты

CWE-1321

Связанные уязвимости

CVSS3: 8.2
redhat
больше 1 года назад

Versions of the package uplot before 1.6.31 are vulnerable to Prototype Pollution via the uplot.assign function due to missing check if the attribute resolves to the object prototype.

CVSS3: 8.2
github
больше 1 года назад

uPlot Prototype Pollution vulnerability

EPSS

Процентиль: 37%
0.00159
Низкий

8.2 High

CVSS3

Дефекты

CWE-1321