Vulnerabilities > Protobufjs Project

DATE CVE VULNERABILITY TITLE RISK
2023-07-05 CVE-2023-36665 Unspecified vulnerability in Protobufjs Project Protobufjs
"protobuf.js (aka protobufjs) 6.10.0 through 7.x before 7.2.5 allows Prototype Pollution, a different vulnerability than CVE-2022-25878.
network
low complexity
protobufjs-project
critical
9.8
2022-05-27 CVE-2022-25878 Unspecified vulnerability in Protobufjs Project Protobufjs
The package protobufjs before 6.11.3 are vulnerable to Prototype Pollution which can allow an attacker to add/modify properties of the Object.prototype.
network
low complexity
protobufjs-project
7.5
2018-06-07 CVE-2018-3738 Incorrect Regular Expression vulnerability in Protobufjs Project Protobufjs
protobufjs is vulnerable to ReDoS when parsing crafted invalid .proto files.
local
low complexity
protobufjs-project CWE-185
5.5