PT-2024-36694 · Unknown · Mighty Digital Partners

Le Ngoc Anh

·

Published

2024-12-18

·

Updated

2024-12-18

·

CVE-2024-56059

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Mighty Digital Partners versions n/a through 0.2.0
Description The issue is related to an Improperly Controlled Modification of Object Prototype Attributes, also known as 'Prototype Pollution', which allows Object Injection. This enables attackers to perform certain actions on the affected system.
Recommendations For versions n/a through 0.2.0, update to a version that fixes the 'Prototype Pollution' vulnerability to prevent Object Injection. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Prototype Pollution

Weakness Enumeration

Related Identifiers

CVE-2024-56059

Affected Products

Mighty Digital Partners