CVE-2024-39018 Information

Description

harvey-woo cat5th/key-serializer v0.2.5 was discovered to contain a prototype pollution via the function \query. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.

Reference

https://gist.github.com/mestrtee/be75c60307b2292884cc03cebd361f3f

Share on: