Lucene search

K
osvGoogleOSV:GHSA-8GWJ-8HXC-285W
HistoryNov 08, 2021 - 5:43 p.m.

Prototype Pollution in json-ptr

2021-11-0817:43:27
Google
osv.dev
21
json-ptr vulnerability bypass

EPSS

0.199

Percentile

96.4%

This affects the package json-ptr before 3.0.0. A type confusion vulnerability can lead to a bypass of CVE-2020-7766 when the user-provided keys used in the pointer parameter are arrays.

EPSS

0.199

Percentile

96.4%

Related for OSV:GHSA-8GWJ-8HXC-285W