CVE-2022-37623
9.8CRITICALPrototype pollution vulnerability in function resolveShims in resolve-shims.js in thlorenz browserify-shim 3.8.15 via the shimPath variable in resolve-shims.js.
Publicado: 10/31/2022Atualizado: 5/6/2025
Descrição
Prototype pollution vulnerability in function resolveShims in resolve-shims.js in thlorenz browserify-shim 3.8.15 via the shimPath variable in resolve-shims.js.
Análise IADesenvolvido por IA
Produtos Afetados
browserify-shim_projectbrowserify-shim
3.8.15
Referências
- https://github.com/thlorenz/browserify-shim/blob/464b32bbe142664cd9796059798f6c738ea3de8f/lib/resolve-shims.js#L158ExploitThird Party Advisory
- https://github.com/thlorenz/browserify-shim/blob/464b32bbe142664cd9796059798f6c738ea3de8f/lib/resolve-shims.js#L94ExploitThird Party Advisory
- https://github.com/thlorenz/browserify-shim/issues/248Issue TrackingThird Party Advisory
- https://github.com/thlorenz/browserify-shim/blob/464b32bbe142664cd9796059798f6c738ea3de8f/lib/resolve-shims.js#L158ExploitThird Party Advisory
- https://github.com/thlorenz/browserify-shim/blob/464b32bbe142664cd9796059798f6c738ea3de8f/lib/resolve-shims.js#L94ExploitThird Party Advisory
- https://github.com/thlorenz/browserify-shim/issues/248Issue TrackingThird Party Advisory