CVE-2020-28460
Published Dec 22, 2020This affects the package multi-ini before 2.1.2. It is possible to pollute an object's prototype by specifying the constructor.proto object as part of an array. This is a bypass o…
Vendor/product archive
2 CVEs tagged to multi-ini_project / multi-ini — 0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.
This affects the package multi-ini before 2.1.2. It is possible to pollute an object's prototype by specifying the constructor.proto object as part of an array. This is a bypass o…
This affects the package multi-ini before 2.1.1. It is possible to pollute an object's prototype by specifying the proto object as part of an array.