Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:13303
HistoryFeb 04, 2019 - 4:16 a.m.

Prototype Pollution

2019-02-0404:16:33
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

EPSS

0.004

Percentile

73.4%

just-extend is vulnerable to prototype pollution. An attacker is able to inject arbitrary properties into Object.prototype to add or modify existing properties due to a lack of object validation.

EPSS

0.004

Percentile

73.4%