Versions of the package mysql2 before 3.9.8 are vulnerable to Prototype Pollution due to improper user input sanitization passed to fields and tables when using nestTables.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: snyk

Published: 2024-05-29T05:00:01.515Z

Updated: 2024-08-01T22:20:40.900Z

Reserved: 2023-12-22T12:33:20.120Z

Link: CVE-2024-21512

cve-icon Vulnrichment

Updated: 2024-08-01T22:20:40.900Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-29T05:16:08.353

Modified: 2024-06-06T13:15:31.390

Link: CVE-2024-21512

cve-icon Redhat

Severity : Important

Publid Date: 2024-05-29T00:00:00Z

Links: CVE-2024-21512 - Bugzilla