Количество 2
Количество 2
CVE-2020-28480
около 5 лет назад
The package jointjs before 3.3.0 are vulnerable to Prototype Pollution via util.setByPath (https://resources.jointjs.com/docs/jointjs/v3.2/joint.htmlutil.setByPath). The path used the access the object's key and set the value is not properly sanitized, leading to a Prototype Pollution.
CVSS3: 7.3
EPSS: Низкий
GHSA-qwp9-52h8-xgg8
около 5 лет назад
Prototype pollution in JointJS
EPSS: Низкий
Уязвимостей на страницу
20
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2020-28480 The package jointjs before 3.3.0 are vulnerable to Prototype Pollution via util.setByPath (https://resources.jointjs.com/docs/jointjs/v3.2/joint.htmlutil.setByPath). The path used the access the object's key and set the value is not properly sanitized, leading to a Prototype Pollution. | CVSS3: 7.3 | 1% Низкий | около 5 лет назад | |
GHSA-qwp9-52h8-xgg8 Prototype pollution in JointJS | 1% Низкий | около 5 лет назад |
Уязвимостей на страницу
20