CVE-2024-36572

9.8CRITICAL

Prototype pollution in allpro form-manager 0.7.4 allows attackers to run arbitrary code and cause other impacts via the functions setDefaults, mergeBranch, and Object.setObjectValue.

Veröffentlicht: 7/30/2024Aktualisiert: 11/21/2024

Beschreibung

Prototype pollution in allpro form-manager 0.7.4 allows attackers to run arbitrary code and cause other impacts via the functions setDefaults, mergeBranch, and Object.setObjectValue.

KI-AnalyseKI-gestützt

Betroffene Produkte

allproformmanager_data_handler
0.7.4

Referenzen