Skip to main content

Vendor/product archive

multi-ini_project / multi-ini CVEs

Beta · best-effort

2 CVEs tagged to multi-ini_project / multi-ini0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.

CVE-2020-28460

Published Dec 22, 2020

This affects the package multi-ini before 2.1.2. It is possible to pollute an object's prototype by specifying the constructor.proto object as part of an array. This is a bypass o…

CVSS 5.6 · Medium
Vendor/product tagsBeta · best-effort

CVE-2020-28448

Published Dec 22, 2020

This affects the package multi-ini before 2.1.1. It is possible to pollute an object's prototype by specifying the proto object as part of an array.

CVSS 5.6 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1