Security Advisory

CVE-2024-21528

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2024-09-10 05:00:01
Last updated 2024-11-12 19:59:36
Assigner snyk
State PUBLISHED

Description

All versions of the package node-gettext are vulnerable to Prototype Pollution via the addTranslations() function in gettext.js due to improper user input sanitization.