Lucene search

K
osvGoogleOSV:GHSA-7FM6-GXQG-2PWR
HistoryDec 10, 2021 - 5:26 p.m.

Code Injection in total.js

2021-12-1017:26:06
Google
osv.dev
11
total.js
code injection
arbitrary code execution
u.set()
u.get()
software

EPSS

0.006

Percentile

78.8%

The package total.js before 3.4.9 are vulnerable to Arbitrary Code Execution via the U.set() and U.get() functions.

EPSS

0.006

Percentile

78.8%

Related for OSV:GHSA-7FM6-GXQG-2PWR