CVE-2023-26132
CVSS V2 None
CVSS V3 None
Description
Versions of the package dottie before 2.0.4 are vulnerable to Prototype Pollution due to insufficient checks, via the set() function and the current variable in the /dottie.js file.
Overview
- CVE ID
- CVE-2023-26132
- Assigner
- snyk
- Vulnerability Status
- PUBLISHED
- Published Version
- 2023-06-10T05:00:01.826Z
- Last Modified Date
- 2023-06-10T05:00:01.826Z
Weakness Enumerations
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2023-26132 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-26132 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-24 23:27:17 | Added to TrackCVE |