Beveiligingsadvies

CVE-2020-7720

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-09-01 09:35:12
Laatst bijgewerkt 2024-09-16 17:49:31
Toegewezen door snyk
CVSS-score 9.8
Status PUBLISHED

Beschrijving

The package node-forge before 0.10.0 is vulnerable to Prototype Pollution via the util.setPath function. Note: Version 0.10.0 is a breaking change removing the vulnerable functions.