CVE-2024-21528

Publication date

2024-09-10 05:00:01

Family

snyk

State

PUBLISHED

Description

All versions of the package node-gettext are vulnerable to Prototype Pollution via the addTranslations() function in gettext.js due to improper user input sanitization.