ZeroHour

Vulnerabilities

2 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2022-21231
All versions of package deep-get-set are vulnerable to Prototype Pollution via the 'deep' function.

All versions of package deep-get-set are vulnerable to Prototype Pollution via the 'deep' function. **Note:** This vulnerability derives from an incomplete fix of [CVE-2020-7715](https://security.snyk.io/vuln/SNYK-JS-DEEPGETSET-598666)

NVD description · AI analysis pending
9.81% PoC
  • deep-get-set project deep-get-set
CVE-2020-7715
All versions of package deep-get-set are vulnerable to Prototype Pollution via the main function.

All versions of package deep-get-set are vulnerable to Prototype Pollution via the main function.

NVD description · AI analysis pending
9.82% PoC
  • deep-get-set project deep-get-set