CVE-2023-3696

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/07/2023
Last modified:
02/08/2023

Description

Prototype Pollution in GitHub repository automattic/mongoose prior to 7.3.4.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mongoosejs:mongoose:*:*:*:*:*:node.js:*:* 5.13.20 (excluding)
cpe:2.3:a:mongoosejs:mongoose:*:*:*:*:*:node.js:*:* 6.0.0 (including) 6.11.3 (excluding)
cpe:2.3:a:mongoosejs:mongoose:*:*:*:*:*:node.js:*:* 7.0.0 (including) 7.3.4 (excluding)