Lucene search

K
redhatcveRedhat.comRH:CVE-2024-39008
HistoryJul 01, 2024 - 9:20 p.m.

CVE-2024-39008

2024-07-0121:20:30
redhat.com
access.redhat.com
2
cve-2024-39008
prototype pollution
objectmergedeep
arbitrary code execution
denial of service

8.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.2%

robinweser fast-loops v1.1.3 was discovered to contain a prototype pollution via the function objectMergeDeep. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.

8.3 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

9.2%

Related for RH:CVE-2024-39008