Lucene search

K
osvGoogleOSV:GHSA-2F6G-W5GJ-C93H
HistoryApr 13, 2021 - 3:20 p.m.

Prototype Pollution in iniparserjs

2021-04-1315:20:09
Google
osv.dev
13
iniparserjs
vulnerability
ini_parser.js
arrays
attacker
overwrite
object prototype

EPSS

0.001

Percentile

45.7%

This affects all versions of package iniparserjs. This vulnerability relates when ini_parser.js is concentrating arrays. Depending on if user input is provided, an attacker can overwrite and pollute the object prototype of a program.

EPSS

0.001

Percentile

45.7%

Related for OSV:GHSA-2F6G-W5GJ-C93H