Vulnerabilities > CVE-2020-7720 - Unspecified vulnerability in Digitalbazaar Forge

047910
CVSS 7.3 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
LOW
Integrity impact
LOW
Availability impact
LOW
network
low complexity
digitalbazaar

Summary

The package node-forge before 0.10.0 is vulnerable to Prototype Pollution via the util.setPath function. Note: Version 0.10.0 is a breaking change removing the vulnerable functions.

Vulnerable Configurations

Part Description Count
Application
Digitalbazaar
129