CVE-2024-36572

9.8CRITICAL

Prototype pollution in allpro form-manager 0.7.4 allows attackers to run arbitrary code and cause other impacts via the functions setDefaults, mergeBranch, and Object.setObjectValue.

Publicado: 7/30/2024Atualizado: 11/21/2024

Descrição

Prototype pollution in allpro form-manager 0.7.4 allows attackers to run arbitrary code and cause other impacts via the functions setDefaults, mergeBranch, and Object.setObjectValue.

Análise IADesenvolvido por IA

Produtos Afetados

allproformmanager_data_handler
0.7.4

Referências