ZeroHour

CVE-2020-7618

PoC
CVSS 3.1
5.3 medium
EPSS
1%p65
Published
()
Modified
Description

sds through 3.2.0 is vulnerable to Prototype Pollution.The library could be tricked into adding or modifying properties of the 'Object.prototype' by abusing the 'set' function located in 'js/set.js'.

Vendors
sds project
Products
sds
Weakness
CWE-1321
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

In the news

No ingested article mentions this CVE yet.