Prototype Pollution Vulnerability in Syncfusion Spreadsheet Library
CVE-2024-57064
7.5HIGH
What is CVE-2024-57064?
A vulnerability exists in the lib.setValue function of the @syncfusion/ej2-spreadsheet version 27.2.2, which is susceptible to prototype pollution. Attackers can exploit this weakness by delivering a specially crafted payload, potentially leading to a Denial of Service (DoS) condition. This flaw highlights the importance of input validation in library functions to prevent unauthorized manipulation of object prototypes.
