Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:28850
HistoryDec 30, 2020 - 1:47 a.m.

Prototype Pollution

2020-12-3001:47:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
prototype pollution
vulnerability
injection
arbitrary properties
construct prototypes
attribute modification
denial of service
remote code execution
set-object-value
software

EPSS

0.012

Percentile

85.8%

set-object-value is vulnerable to prototype pollution. An attacker is able to exploit the vulnerability to inject arbitrary properties into existing construct prototypes and modify attributes such as __proto__, constructor and prototype causing a denial of service and may lead to remote code execution.

EPSS

0.012

Percentile

85.8%

Related for VERACODE:28850