CVE-2024-36575

A Prototype Pollution issue in getsetprop 1.1.0 allows an attacker to execute arbitrary code via global.accessor.
Configurations

No configuration.

History

03 Jul 2024, 02:03

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8
CWE CWE-94

20 Jun 2024, 12:44

Type Values Removed Values Added
Summary
  • (es) Un problema de contaminación de prototipos en getsetprop 1.1.0 permite a un atacante ejecutar código arbitrario a través de global.accessor.

17 Jun 2024, 16:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-17 16:15

Updated : 2024-07-03 02:03


NVD link : CVE-2024-36575

Mitre link : CVE-2024-36575

CVE.ORG link : CVE-2024-36575


JSON object : View

Products Affected

No product.

CWE
CWE-94

Improper Control of Generation of Code ('Code Injection')