CVE-2021-28860

CVE-2021-28860

Node.js mixme 0.5.0, an attacker can add or alter properties of an object via ‘__proto__’ through the mutate() and merge() functions. The polluted attribute will be directly assigned to every object in the program. This will put the availability of the program at risk causing a potential denial of service (DoS).

Source: CVE-2021-28860

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다