b-heilman/bmoor

b-heilman/bmoor

Releases83
Frequency1 month 3 days
Last Release
Stars2
Javascript system for bootstrapping, autoloading, and defining functionality

CVE History

CVEPublishedCVSS v3CVSS v2
7.3 HIGH7.5 HIGH

The package bmoor before 0.10.1 are vulnerable to Prototype Pollution due to missing sanitization in set function. **Note:** This vulnerability derives from an incomplete fix in [CVE-2020-7736](https://security.snyk.io/vuln/SNYK-JS-BMOOR-598664)

7.3 HIGH7.5 HIGH

The package bmoor before 0.8.12 are vulnerable to Prototype Pollution via the set function.