Lucene search

K
osvGoogleOSV:GHSA-JGPQ-G82G-6C39
HistoryApr 07, 2020 - 3:52 p.m.

confinit vulnerable to prototype pollution

2020-04-0715:52:05
Google
osv.dev
3

0.001 Low

EPSS

Percentile

38.8%

confinit through 0.3.0 is vulnerable to Prototype Pollution.The ‘setDeepProperty’ function could be tricked into adding or modifying properties of ‘Object.prototype’ using a ‘proto’ payload.

CPENameOperatorVersion
confinitlt0.4.0

0.001 Low

EPSS

Percentile

38.8%