Beveiligingsadvies

CVE-2020-7770

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2020-11-12 10:15:16
Laatst bijgewerkt 2024-09-16 20:42:54
Toegewezen door snyk
CVSS-score 6.5
Status PUBLISHED

Beschrijving

This affects the package json8 before 1.0.3. The function adds in the target object the property specified in the path, however it does not properly check the key being set, leading to a prototype pollution.