CVE-2024-36573
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/06/2024
Last modified:
01/08/2024
Description
almela obx before v.0.0.4 has a Prototype Pollution issue which allows arbitrary code execution via the obx/build/index.js:656), reduce (@almela/obx/build/index.js:470), Object.set (obx/build/index.js:269) component.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL



