Description
This affects the package json8 before 1.0.3. The function adds in the target object the property specified in the path, however it does not properly check the key being set, leading to a prototype pollution.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-0999 | This affects the package json8 before 1.0.3. The function adds in the target object the property specified in the path, however it does not properly check the key being set, leading to a prototype pollution. |
Github GHSA |
GHSA-7h43-gx24-p529 | Prototype pollution in json8 |
References
History
No history.
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-09-16T20:42:54.969Z
Reserved: 2020-01-21T00:00:00.000Z
Link: CVE-2020-7770
No data.
Status : Modified
Published: 2020-11-12T11:15:11.870
Modified: 2024-11-21T05:37:46.237
Link: CVE-2020-7770
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA