Description
Prototype pollution vulnerability in function parseQuery in parseQuery.js in webpack loader-utils via the name variable in parseQuery.js. This affects all versions prior to 1.4.1 and 2.0.3.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3258-1 | node-loader-utils security update |
Github GHSA |
GHSA-76p3-8jx3-jpfq | Prototype pollution in webpack loader-utils |
References
History
Mon, 28 Oct 2024 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-10-28T19:41:38.297Z
Reserved: 2022-08-08T00:00:00.000Z
Link: CVE-2022-37601
Updated: 2024-08-03T10:29:21.030Z
Status : Modified
Published: 2022-10-12T20:15:11.263
Modified: 2024-11-21T07:15:02.190
Link: CVE-2022-37601
OpenCVE Enrichment
No data.
Weaknesses
Debian DLA
Github GHSA