Vulnerabilities > Protobufjs Project > Protobufjs > 6.7.2
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-05-27 | CVE-2022-25878 | Unspecified vulnerability in Protobufjs Project Protobufjs The package protobufjs before 6.11.3 are vulnerable to Prototype Pollution which can allow an attacker to add/modify properties of the Object.prototype. | 7.5 |
2018-06-07 | CVE-2018-3738 | Incorrect Regular Expression vulnerability in Protobufjs Project Protobufjs protobufjs is vulnerable to ReDoS when parsing crafted invalid .proto files. | 5.5 |