think-helper defines a set of helper functions for ThinkJS. In versions of think-helper prior to 1.1.3, the software receives input from an upstream component that specifies attributes that are to be initialized or updated in an object, but it does not properly control modifications of attributes of the object prototype. The vulnerability is patched in version 1.1.3.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: GitHub_M
Published: 2021-06-30T17:25:09
Updated: 2024-08-03T23:33:55.799Z
Reserved: 2021-05-12T00:00:00
Link: CVE-2021-32736
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-06-30T18:15:08.587
Modified: 2024-11-21T06:07:38.517
Link: CVE-2021-32736
Redhat
No data.