Lucene search

K
prionPRIOn knowledge basePRION:CVE-2021-23444
HistorySep 21, 2021 - 5:15 p.m.

Type confusion

2021-09-2117:15:00
PRIOn knowledge base
www.prio-n.com
7

9.3 High

AI Score

Confidence

High

0.024 Low

EPSS

Percentile

89.9%

This affects the package jointjs before 3.4.2. A type confusion vulnerability can lead to a bypass of CVE-2020-28480 when the user-provided keys used in the path parameter are arrays in the setByPath function.

CPENameOperatorVersion
jointjslt3.4.2

9.3 High

AI Score

Confidence

High

0.024 Low

EPSS

Percentile

89.9%