CVE-2020-7714

All versions of package confucious are vulnerable to Prototype Pollution via the set function.
References
Link Resource
https://snyk.io/vuln/SNYK-JS-CONFUCIOUS-598665 Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:realseriousgames:confucious:*:*:*:*:*:node.js:*:*

Information

Published : 2020-09-01 10:15

Updated : 2021-07-21 11:39


NVD link : CVE-2020-7714

Mitre link : CVE-2020-7714


JSON object : View

Products Affected

realseriousgames

  • confucious
CWE
CWE-20

Improper Input Validation