Lucene search

K
cvelistMendCVELIST:CVE-2021-25912
HistoryFeb 02, 2021 - 6:40 p.m.

CVE-2021-25912

2021-02-0218:40:37
Mend
www.cve.org
2
vulnerability
prototype pollution
'dotty'
denial of service
remote code execution

AI Score

9.8

Confidence

High

EPSS

0.012

Percentile

84.9%

Prototype pollution vulnerability in ‘dotty’ versions 0.0.1 through 0.1.0 allows attackers to cause a denial of service and may lead to remote code execution.

CNA Affected

[
  {
    "product": "dotty",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "0.0.1, 0.0.2, 0.1.0"
      }
    ]
  }
]

AI Score

9.8

Confidence

High

EPSS

0.012

Percentile

84.9%