Логотип exploitDog
bind:CVE-2020-5258
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2020-5258

Количество 6

Количество 6

ubuntu логотип

CVE-2020-5258

почти 6 лет назад

In affected versions of dojo (NPM package), the deepCopy method is vulnerable to Prototype Pollution. Prototype Pollution refers to the ability to inject properties into existing JavaScript language construct prototypes, such as objects. An attacker manipulates these attributes to overwrite, or pollute, a JavaScript application object prototype of the base object by injecting other values. This has been patched in versions 1.12.8, 1.13.7, 1.14.6, 1.15.3 and 1.16.2

CVSS3: 7.7
EPSS: Низкий
redhat логотип

CVE-2020-5258

почти 6 лет назад

In affected versions of dojo (NPM package), the deepCopy method is vulnerable to Prototype Pollution. Prototype Pollution refers to the ability to inject properties into existing JavaScript language construct prototypes, such as objects. An attacker manipulates these attributes to overwrite, or pollute, a JavaScript application object prototype of the base object by injecting other values. This has been patched in versions 1.12.8, 1.13.7, 1.14.6, 1.15.3 and 1.16.2

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2020-5258

почти 6 лет назад

In affected versions of dojo (NPM package), the deepCopy method is vulnerable to Prototype Pollution. Prototype Pollution refers to the ability to inject properties into existing JavaScript language construct prototypes, such as objects. An attacker manipulates these attributes to overwrite, or pollute, a JavaScript application object prototype of the base object by injecting other values. This has been patched in versions 1.12.8, 1.13.7, 1.14.6, 1.15.3 and 1.16.2

CVSS3: 7.7
EPSS: Низкий
debian логотип

CVE-2020-5258

почти 6 лет назад

In affected versions of dojo (NPM package), the deepCopy method is vul ...

CVSS3: 7.7
EPSS: Низкий
github логотип

GHSA-jxfh-8wgv-vfr2

почти 6 лет назад

Prototype pollution in dojo

CVSS3: 7.7
EPSS: Низкий
fstec логотип

BDU:2020-03535

почти 6 лет назад

Уязвимость компонента Cluster: Packaging (dojo) системы управления базами данных Oracle MySQL Cluster, позволяющая нарушителю нарушить целостность данных

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-5258

In affected versions of dojo (NPM package), the deepCopy method is vulnerable to Prototype Pollution. Prototype Pollution refers to the ability to inject properties into existing JavaScript language construct prototypes, such as objects. An attacker manipulates these attributes to overwrite, or pollute, a JavaScript application object prototype of the base object by injecting other values. This has been patched in versions 1.12.8, 1.13.7, 1.14.6, 1.15.3 and 1.16.2

CVSS3: 7.7
2%
Низкий
почти 6 лет назад
redhat логотип
CVE-2020-5258

In affected versions of dojo (NPM package), the deepCopy method is vulnerable to Prototype Pollution. Prototype Pollution refers to the ability to inject properties into existing JavaScript language construct prototypes, such as objects. An attacker manipulates these attributes to overwrite, or pollute, a JavaScript application object prototype of the base object by injecting other values. This has been patched in versions 1.12.8, 1.13.7, 1.14.6, 1.15.3 and 1.16.2

CVSS3: 3.7
2%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-5258

In affected versions of dojo (NPM package), the deepCopy method is vulnerable to Prototype Pollution. Prototype Pollution refers to the ability to inject properties into existing JavaScript language construct prototypes, such as objects. An attacker manipulates these attributes to overwrite, or pollute, a JavaScript application object prototype of the base object by injecting other values. This has been patched in versions 1.12.8, 1.13.7, 1.14.6, 1.15.3 and 1.16.2

CVSS3: 7.7
2%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-5258

In affected versions of dojo (NPM package), the deepCopy method is vul ...

CVSS3: 7.7
2%
Низкий
почти 6 лет назад
github логотип
GHSA-jxfh-8wgv-vfr2

Prototype pollution in dojo

CVSS3: 7.7
2%
Низкий
почти 6 лет назад
fstec логотип
BDU:2020-03535

Уязвимость компонента Cluster: Packaging (dojo) системы управления базами данных Oracle MySQL Cluster, позволяющая нарушителю нарушить целостность данных

CVSS3: 5.3
2%
Низкий
почти 6 лет назад

Уязвимостей на страницу