Lucene search

K
osvGoogleOSV:GHSA-PH28-WWFJ-FV7F
HistoryMay 14, 2022 - 12:01 a.m.

Prototype Pollution in sds

2022-05-1400:01:08
Google
osv.dev
9
prototype pollution
sds
version 0.0.0
object.prototype
set function
js/set.js
cve-2020-7618
incomplete fix

EPSS

0.001

Percentile

38.8%

This affects the package sds from 0.0.0. The library could be tricked into adding or modifying properties of the Object.prototype by abusing the set function located in js/set.js. Note: This vulnerability derives from an incomplete fix to CVE-2020-7618

EPSS

0.001

Percentile

38.8%

Related for OSV:GHSA-PH28-WWFJ-FV7F