Lucene search

K
osvGoogleOSV:CVE-2021-23444
HistorySep 21, 2021 - 5:15 p.m.

CVE-2021-23444

2021-09-2117:15:09
Google
osv.dev
2

6.6 Medium

AI Score

Confidence

Low

0.024 Low

EPSS

Percentile

89.9%

This affects the package jointjs before 3.4.2. A type confusion vulnerability can lead to a bypass of CVE-2020-28480 when the user-provided keys used in the path parameter are arrays in the setByPath function.

Rows per page:
1-10 of 371

6.6 Medium

AI Score

Confidence

Low

0.024 Low

EPSS

Percentile

89.9%