Prototype Pollution
CVE-2020-7768
7.5HIGH
What is CVE-2020-7768?
The package grpc before 1.24.4; the package @grpc/grpc-js before 1.1.8 are vulnerable to Prototype Pollution via loadPackageDefinition.
Affected Version(s)
@grpc/grpc-js < 1.1.8
grpc < 1.24.4