Vulnerabilities > CVE-2021-25945 - Improperly Controlled Modification of Dynamically-Determined Object Attributes vulnerability in Js-Extend Project Js-Extend

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
js-extend-project
CWE-915

Summary

Prototype pollution vulnerability in 'js-extend' versions 0.0.1 through 1.0.1 allows attacker to cause a denial of service and may lead to remote code execution.

Vulnerable Configurations

Part Description Count
Application
Js-Extend_Project
1