Vulnerabilities > CVE-2023-3696 - Unspecified vulnerability in Mongoosejs Mongoose
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
Prototype Pollution in GitHub repository automattic/mongoose prior to 7.3.4.
Vulnerable Configurations
References
- https://github.com/automattic/mongoose/commit/305ce4ff789261df7e3f6e72363d0703e025f80d
- https://github.com/automattic/mongoose/commit/305ce4ff789261df7e3f6e72363d0703e025f80d
- https://huntr.dev/bounties/1eef5a72-f6ab-4f61-b31d-fc66f5b4b467
- https://huntr.dev/bounties/1eef5a72-f6ab-4f61-b31d-fc66f5b4b467