PT-2021-21271 · Merge · Merge

Viking04

·

Published

2021-09-10

·

Updated

2022-07-29

·

CVE-2021-3645

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions merge (affected versions not specified)
Description The issue is related to Improperly Controlled Modification of Object Prototype Attributes, also known as 'Prototype Pollution'. This problem allows for the modification of object prototype attributes in an uncontrolled manner.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Prototype Pollution

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-3645
GHSA-CQQH-49MX-FQ63

Affected Products

Merge