RSS   Vulnerabilities for 'Minimist'   RSS

2022-03-17
 
CVE-2021-44906

CWE-1321
 

 
Minimist <=1.2.5 is vulnerable to Prototype Pollution via file index.js, function setKey() (lines 69-95).

 
2020-03-11
 
CVE-2020-7598

CWE-20
 

 
minimist before 1.2.2 could be tricked into adding or modifying properties of Object.prototype using a "constructor" or "__proto__" payload.

 


Copyright 2024, cxsecurity.com

 

Back to Top