rdf-graph-array through 0.3.0-rc6 manipulation of JavaScript objects resutling in Prototype Pollution. The rdf.Graph.prototype.add method could be tricked into adding or modifying properties of Object.prototype.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-0855 | rdf-graph-array through 0.3.0-rc6 manipulation of JavaScript objects resutling in Prototype Pollution. The rdf.Graph.prototype.add method could be tricked into adding or modifying properties of Object.prototype. |
Github GHSA |
GHSA-prv2-xwr7-hr57 | Uncontrolled Resource Consumption in rdf-graph-array |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-08-04T22:32:02.019Z
Reserved: 2019-04-03T00:00:00.000Z
Link: CVE-2019-10798
No data.
Status : Modified
Published: 2020-02-24T18:15:15.227
Modified: 2024-11-21T04:19:56.493
Link: CVE-2019-10798
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA