ZeroHour

CVE-2023-26133

PoC
CVSS 3.1
9.8 critical
EPSS
1%p68
Published
()
Modified
Description

All versions of the package progressbar.js are vulnerable to Prototype Pollution via the function extend() in the file utils.js.

Vendors
progressbar.js project
Products
progressbar.js
Weakness
CWE-1321
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.