CVE-2024-23339
CVSS V2 None
CVSS V3 None
Description
hoolock is a suite of lightweight utilities designed to maintain a small footprint when bundled. Starting in version 2.0.0 and prior to version 2.2.1, utility functions related to object paths (`get`, `set`, and `update`) did not block attempts to access or alter object prototypes. Starting in version 2.2.1, the `get`, `set` and `update` functions throw a `TypeError` when a user attempts to access or alter inherited properties.
Overview
- CVE ID
- CVE-2024-23339
- Assigner
- GitHub_M
- Vulnerability Status
- PUBLISHED
- Published Version
- 2024-01-22T22:54:53.096Z
- Last Modified Date
- 2024-01-22T22:54:53.096Z
Weakness Enumerations
References
Reference URL | Reference Tags |
---|---|
https://github.com/elijahharry/hoolock/security/advisories/GHSA-4c2g-hx49-7h25 | x_refsource_CONFIRM |
https://github.com/elijahharry/hoolock/commit/97ae80e856774335d92743c635ffeae2f652b982 | x_refsource_MISC |
Sources
Source Name | Source URL |
---|---|
NIST | https://nvd.nist.gov/vuln/detail/CVE-2024-23339 |
MITRE | https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-23339 |
History
Created | Old Value | New Value | Data Type | Notes |
---|---|---|---|---|
2024-06-26 07:27:09 | Added to TrackCVE |