CVE-2020-8268

Publication date

2020-11-09 14:06:21

Family

hackerone

State

PUBLISHED

Description

Prototype pollution vulnerability in json8-merge-patch npm package < 1.0.3 may allow attackers to inject or modify methods and properties of the global object constructor.