Prototype Pollution Vulnerability in dot-object Library by rhalff
CVE-2019-10793
6.3MEDIUM
What is CVE-2019-10793?
The dot-object library before version 2.1.3 is susceptible to prototype pollution attacks. The vulnerability arises from the improper handling of the set function, potentially allowing attackers to manipulate properties of Object.prototype by using a malicious proto payload. This flaw could lead to significant security risks, enabling unauthorized access and modification of data across applications leveraging this library.
Affected Version(s)
dot-object All versions prior to version 2.1.3
