CVE-2022-25301

Published
View on NVD ↗
CVSS v3
7.7
HIGH
CVSS v2
7.5
HIGH
Affected
1
PROJECT

Description

All versions of package jsgui-lang-essentials are vulnerable to Prototype Pollution due to allowing all Object attributes to be altered, including their magical attributes such as proto, constructor and prototype.

jsgui - Small and powerful utility module, used by other jsgui modules.
GitHubGitHub
3