ZeroHour

CVE-2019-10808

PoC
CVSS 3.1
8.8 high
EPSS
2%p80
Published
()
Modified
Description

utilitify prior to 1.0.3 allows modification of object properties. The merge method could be tricked into adding or modifying properties of the Object.prototype.

Vendors
xcritical.software
Products
utilitify
Weakness
CWE-1321
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.