Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-15187

Опубликовано: 09 июл. 2026
Источник: nvd
CVSS3: 4.3
CVSS2: 4
EPSS Низкий

Описание

A security flaw has been discovered in enquirer up to 2.4.1. Affected is the function Enquirer.set of the component Public Package API. The manipulation of the argument question.name results in improperly controlled modification of object prototype attributes. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report.

EPSS

Процентиль: 16%
0.00248
Низкий

4.3 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-94

Связанные уязвимости

CVSS3: 4.3
redhat
около 1 месяца назад

A security flaw has been discovered in enquirer up to 2.4.1. Affected is the function Enquirer.set of the component Public Package API. The manipulation of the argument question.name results in improperly controlled modification of object prototype attributes. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report.

CVSS3: 4.3
github
около 1 месяца назад

A security flaw has been discovered in enquirer up to 2.4.1. Affected is the function Enquirer.set of the component Public Package API. The manipulation of the argument question.name results in improperly controlled modification of object prototype attributes. The attack can be launched remotely. The exploit has been released to the public and may be used for attacks. The project was informed of the problem early through an issue report.

EPSS

Процентиль: 16%
0.00248
Низкий

4.3 Medium

CVSS3

4 Medium

CVSS2

Дефекты

CWE-94