Security Advisory

CVE-2021-23449

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-10-18 16:40:13
Last updated 2024-09-17 01:46:09
Assigner snyk
State PUBLISHED

Description

This affects the package vm2 before 3.9.4 via a Prototype Pollution attack vector, which can lead to execution of arbitrary code on the host machine.