ZeroHour

CVE-2021-23450

PoC ×5
CVSS 3.1
9.8 critical
EPSS
30%p98
Published
()
Modified
Description

All versions of package dojo are vulnerable to Prototype Pollution via the setObject function.

Vendors
linuxfoundationoracledebian
Products
dojo, communications policy management, primavera unifier, weblogic server, debian linux
Weakness
CWE-1321
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.