Vulnerabilities > Springtree

DATE CVE VULNERABILITY TITLE RISK
2022-04-15 CVE-2022-24279 Unspecified vulnerability in Springtree Madlib-Object-Utils
The package madlib-object-utils before 0.1.8 are vulnerable to Prototype Pollution via the setValue method, as it allows an attacker to merge object prototypes into it.
network
low complexity
springtree
7.5
2020-08-14 CVE-2020-7701 Unspecified vulnerability in Springtree Madlib-Object-Utils
madlib-object-utils before 0.1.7 is vulnerable to Prototype Pollution via setValue.
network
low complexity
springtree
critical
9.8