CVE-2020-8158

Publication date

2020-09-18 20:12:16

Family

hackerone

State

PUBLISHED

Description

Prototype pollution vulnerability in the TypeORM package < 0.2.25 may allow attackers to add or modify Object properties leading to further denial of service or SQL injection attacks.