Vulnerabilities (CVE)

Filtered by vendor Ini Project Subscribe
Filtered by product Ini
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-7788 2 Debian, Ini Project 2 Debian Linux, Ini 2024-02-04 7.5 HIGH 9.8 CRITICAL
This affects the package ini before 1.3.6. If an attacker submits a malicious INI file to an application that parses it with ini.parse, they will pollute the prototype on the application. This can be exploited further depending on the context.