Security Advisory

CVE-2020-7643

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-04-23 13:23:27
Last updated 2024-08-04 09:33:20
Assigner snyk
CVSS score not scored
State PUBLISHED

Description

paypal-adaptive through 0.4.2 manipulation of JavaScript objects resulting in Prototype Pollution. The PayPal function could be tricked into adding or modifying properties of Object.prototype using a __proto__ payload.