Lucene search

K
nodejsAsgerfNODEJS:796
HistoryApr 02, 2019 - 9:06 p.m.

Prototype Pollution

2019-04-0221:06:11
asgerf
www.npmjs.com
82

EPSS

0.002

Percentile

64.3%

Overview

Versions of jquery prior to 3.4.0 are vulnerable to Prototype Pollution. The extend() method allows an attacker to modify the prototype for Object causing changes in properties that will exist on all objects.

Recommendation

Upgrade to version 3.4.0 or later.

References

EPSS

0.002

Percentile

64.3%