Vulnerabilities > Querymen Project

DATE CVE VULNERABILITY TITLE RISK
2022-06-17 CVE-2022-25871 Unspecified vulnerability in Querymen Project Querymen
All versions of package querymen are vulnerable to Prototype Pollution if the parameters of exported function handler(type, name, fn) can be controlled by users without any sanitization.
network
low complexity
querymen-project
5.0
2020-03-12 CVE-2020-7600 Unspecified vulnerability in Querymen Project Querymen
querymen prior to 2.1.4 allows modification of object properties.
network
low complexity
querymen-project
5.3