Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 6

Количество 6

ubuntu логотип

CVE-2026-41242

4 месяца назад

protobufjs compiles protobuf definitions into JavaScript (JS) functions. In versions prior to 8.0.1 and 7.5.5, attackers can inject arbitrary code in the "type" fields of protobuf definitions, which will then execute during object decoding using that definition. Versions 8.0.1 and 7.5.5 patch the issue.

CVSS3: 9.8
EPSS: Низкий
redhat логотип

CVE-2026-41242

4 месяца назад

protobufjs compiles protobuf definitions into JavaScript (JS) functions. In versions prior to 8.0.1 and 7.5.5, attackers can inject arbitrary code in the "type" fields of protobuf definitions, which will then execute during object decoding using that definition. Versions 8.0.1 and 7.5.5 patch the issue.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2026-41242

4 месяца назад

protobufjs compiles protobuf definitions into JavaScript (JS) functions. In versions prior to 8.0.1 and 7.5.5, attackers can inject arbitrary code in the "type" fields of protobuf definitions, which will then execute during object decoding using that definition. Versions 8.0.1 and 7.5.5 patch the issue.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2026-41242

4 месяца назад

protobufjs compiles protobuf definitions into JavaScript (JS) function ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-xq3m-2v4x-88gg

4 месяца назад

Arbitrary code execution in protobufjs

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2026-05548

4 месяца назад

Уязвимость библиотеки для работы с протоколом Protocol Buffers (Protobuf) protobufjs, связанная с неверным управлением генерацией кода, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-41242

protobufjs compiles protobuf definitions into JavaScript (JS) functions. In versions prior to 8.0.1 and 7.5.5, attackers can inject arbitrary code in the "type" fields of protobuf definitions, which will then execute during object decoding using that definition. Versions 8.0.1 and 7.5.5 patch the issue.

CVSS3: 9.8
1%
Низкий
4 месяца назад
redhat логотип
CVE-2026-41242

protobufjs compiles protobuf definitions into JavaScript (JS) functions. In versions prior to 8.0.1 and 7.5.5, attackers can inject arbitrary code in the "type" fields of protobuf definitions, which will then execute during object decoding using that definition. Versions 8.0.1 and 7.5.5 patch the issue.

CVSS3: 8.8
1%
Низкий
4 месяца назад
nvd логотип
CVE-2026-41242

protobufjs compiles protobuf definitions into JavaScript (JS) functions. In versions prior to 8.0.1 and 7.5.5, attackers can inject arbitrary code in the "type" fields of protobuf definitions, which will then execute during object decoding using that definition. Versions 8.0.1 and 7.5.5 patch the issue.

CVSS3: 9.8
1%
Низкий
4 месяца назад
debian логотип
CVE-2026-41242

protobufjs compiles protobuf definitions into JavaScript (JS) function ...

CVSS3: 9.8
1%
Низкий
4 месяца назад
github логотип
GHSA-xq3m-2v4x-88gg

Arbitrary code execution in protobufjs

CVSS3: 9.8
1%
Низкий
4 месяца назад
fstec логотип
BDU:2026-05548

Уязвимость библиотеки для работы с протоколом Protocol Buffers (Protobuf) protobufjs, связанная с неверным управлением генерацией кода, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.9
1%
Низкий
4 месяца назад

Уязвимостей на страницу