PT-2021-15534 · X-Assign · X-Assign

Jayateertha Guruprasad

·

Published

2021-10-20

·

Updated

2024-02-14

·

CVE-2021-23452

CVSS v3.1

8.6

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:L/A:L
Name of the Vulnerable Software and Affected Versions x-assign versions all
Description The issue affects the global proto object, which can be polluted using the proto object. This allows for potential manipulation of the object's properties.
Recommendations For all versions, consider restricting access to the proto object as a temporary workaround until a patch is available.

Exploit

Fix

Prototype Pollution

Weakness Enumeration

Related Identifiers

CVE-2021-23452
GHSA-4MVJ-RQ4V-2FXW

Affected Products

X-Assign