Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

P. Adithya Srinivas

#18109of 53,635
15Total CVSS
Vulnerabilities · 2
High
2
PT-2022-17573
7.5
2022-05-13
Sds · Sds · CVE-2022-25862
**Name of the Vulnerable Software and Affected Versions** sds versions 0.0.0 and later **Description** The issue allows the library to be tricked into adding or modifying properties of the Object.prototype. This is achieved by abusing the `set` function located in `js/set.js`. **Recommendations** For sds version 0.0.0, consider restricting access to the `set` function in `js/set.js` to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2022-17192
7.5
2022-03-17
Bodymen · Bodymen · CVE-2022-25296
**Name of the Vulnerable Software and Affected Versions** bodymen versions 0.0.0 and later **Description** The issue allows for Prototype Pollution via the `handler` function, which can be tricked into adding or modifying properties of `Object.prototype` using a ` proto ` payload. **Recommendations** For bodymen versions 0.0.0 and later, at the moment, there is no information about a newer version that contains a fix for this vulnerability.