CVE-2023-26106
7.5HIGHAll versions of the package dot-lens are vulnerable to Prototype Pollution via the set() function in index.js file.
Published: 3/6/2023Updated: 3/5/2025
Description
All versions of the package dot-lens are vulnerable to Prototype Pollution via the set() function in index.js file.
AI AnalysisPowered by AI
Affected Products
dot-lens_projectdot-lens
References
- https://github.com/jb55/dot-lens/blob/465ef2088e4065b7be1c4372eedd2215c3820bc4/index.js%23L70Broken Link
- https://security.snyk.io/vuln/SNYK-JS-DOTLENS-3227646ExploitThird Party Advisory
- https://github.com/jb55/dot-lens/blob/465ef2088e4065b7be1c4372eedd2215c3820bc4/index.js%23L70Broken Link
- https://security.snyk.io/vuln/SNYK-JS-DOTLENS-3227646ExploitThird Party Advisory