ZeroHour

CVE-2021-23432

PoC
CVSS 3.1
9.8 critical
EPSS
<1%p57
Published
()
Modified
Description

This affects all versions of package mootools. This is due to the ability to pass untrusted input to Object.merge()

Vendors
mootools project
Products
mootools
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.