Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37456
HistoryOct 10, 2022 - 6:55 p.m.

Prototype Pollution

2022-10-1018:55:28
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12
vulnerability
chromium
bullseye
sid
handler function
object.prototype
__proto__ payload

EPSS

0.001

Percentile

47.3%

chromium,bullseye and chromium,sid is vulnerable to prototype pollution. The vulnerability exists in the handler function which could be tricked into adding or modifying properties of Object.prototype using a proto payload.