Security Advisory

CVE-2020-28439

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-12-11 16:55:21
Last updated 2024-09-16 19:56:43
Assigner snyk
State PUBLISHED

Description

This affects all versions of package corenlp-js-prefab. The injection point is located in line 10 in index.js. It depends on a vulnerable package corenlp-js-interface. Vulnerability can be exploited with the following PoC: