Vulnerability CVE-2022-37617


Published: 2022-10-11   Modified: 2022-10-12

Description:
Prototype pollution vulnerability in function resolveShims in resolve-shims.js in thlorenz browserify-shim 3.8.15 via the k variable in resolve-shims.js.

 References:
https://github.com/thlorenz/browserify-shim/blob/464b32bbe142664cd9796059798f6c738ea3de8f/lib/resolve-shims.js#L158
https://github.com/thlorenz/browserify-shim/blob/464b32bbe142664cd9796059798f6c738ea3de8f/lib/resolve-shims.js#L130
https://github.com/thlorenz/browserify-shim/issues/245

Copyright 2026, cxsecurity.com

 

Back to Top