CVE-2020-7774

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/11/2020
Last modified:
02/12/2022

Description

The package y18n before 3.2.2, 4.0.1 and 5.0.5, is vulnerable to Prototype Pollution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:y18n_project:y18n:*:*:*:*:*:node.js:*:* 3.2.2 (excluding)
cpe:2.3:a:y18n_project:y18n:*:*:*:*:*:node.js:*:* 5.0.0 (including) 5.0.5 (excluding)
cpe:2.3:a:y18n_project:y18n:4.0.0:*:*:*:*:node.js:*:*
cpe:2.3:a:oracle:graalvm:19.3.5:*:*:*:enterprise:*:*:*
cpe:2.3:a:oracle:graalvm:20.3.1.2:*:*:*:enterprise:*:*:*
cpe:2.3:a:oracle:graalvm:21.0.0.2:*:*:*:enterprise:*:*:*
cpe:2.3:a:siemens:sinec_infrastructure_network_services:*:*:*:*:*:*:*:* 1.0.1.1 (excluding)