Filtered by vendor Multi-ini Project
Subscriptions
Total
2 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2020-28460 | 1 Multi-ini Project | 1 Multi-ini | 2024-09-17 | 5.6 Medium |
This affects the package multi-ini before 2.1.2. It is possible to pollute an object's prototype by specifying the constructor.proto object as part of an array. This is a bypass of CVE-2020-28448. | ||||
CVE-2020-28448 | 1 Multi-ini Project | 1 Multi-ini | 2024-09-16 | 5.6 Medium |
This affects the package multi-ini before 2.1.1. It is possible to pollute an object's prototype by specifying the proto object as part of an array. |
Page 1 of 1.