Описание
Prototype pollution vulnerability in searchParamsToObject() is leading to a persistent XSS in Maps. URL parameter processing was not filtering dangerous properties like proto, combined with jQuery's unsafe element creation that traversed the prototype chain.
EPSS
Процентиль: 22%
0.00296
Низкий
Дефекты
CWE-1321
Связанные уязвимости
ubuntu
2 дня назад
(Prototype pollution vulnerability in searchParamsToObject() is leading ...)
debian
2 дня назад
Prototype pollution vulnerability in searchParamsToObject() is leading ...
github
2 дня назад
Prototype pollution vulnerability in searchParamsToObject() is leading to a persistent XSS in Maps. URL parameter processing was not filtering dangerous properties like __proto__, combined with jQuery's unsafe element creation that traversed the prototype chain.
EPSS
Процентиль: 22%
0.00296
Низкий
Дефекты
CWE-1321