Vulnerabilities (CVE)

Filtered by vendor Digitalbazaar Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-7720 1 Digitalbazaar 1 Forge 2022-01-12 7.5 HIGH 7.3 HIGH
The package node-forge before 0.10.0 is vulnerable to Prototype Pollution via the util.setPath function. Note: Version 0.10.0 is a breaking change removing the vulnerable functions.