Description
Versions of lodash lower than 4.17.12 are vulnerable to Prototype Pollution. The function defaultsDeep could be tricked into adding or modifying properties of Object.prototype using a constructor payload.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-jf85-cpcp-j695 | Prototype Pollution in lodash |
References
History
No history.
Subscriptions
F5
Subscribe
Big-ip Access Policy Manager
Subscribe
Big-ip Advanced Firewall Manager
Subscribe
Big-ip Analytics
Subscribe
Big-ip Application Acceleration Manager
Subscribe
Big-ip Application Security Manager
Subscribe
Big-ip Application Visibility And Reporting
Subscribe
Big-ip Domain Name System
Subscribe
Big-ip Edge Gateway
Subscribe
Big-ip Fraud Protection Service
Subscribe
Big-ip Global Traffic Manager
Subscribe
Big-ip Link Controller
Subscribe
Big-ip Local Traffic Manager
Subscribe
Big-ip Policy Enforcement Manager
Subscribe
Big-ip Webaccelerator
Subscribe
Big-iq Centralized Management
Subscribe
Iworkflow
Subscribe
Lodash
Subscribe
Lodash
Subscribe
Netapp
Subscribe
Active Iq Unified Manager
Subscribe
Service Level Manager
Subscribe
Oracle
Subscribe
Banking Extensibility Workbench
Subscribe
Redhat
Subscribe
Amq Broker
Subscribe
Jaeger
Subscribe
Jboss Fuse
Subscribe
Rhev Manager
Subscribe
Service Mesh
Subscribe
Virtualization Manager
Subscribe
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-08-04T22:32:01.271Z
Reserved: 2019-04-03T00:00:00.000Z
Link: CVE-2019-10744
No data.
Status : Modified
Published: 2019-07-26T00:15:11.217
Modified: 2024-11-21T04:19:50.123
Link: CVE-2019-10744
OpenCVE Enrichment
No data.
Github GHSA