Skip to main content

Vendor archive

ini-parser_project CVEs

Beta · best-effort

1 CVEs tagged to vendor ini-parser_project0 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2020-7617

Published Apr 2, 2020

ini-parser through 0.0.2 is vulnerable to Prototype Pollution.The library could be tricked into adding or modifying properties of Object.prototype using a '__proto__' payload.

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1