Vulnerabilities > Substack

DATE CVE VULNERABILITY TITLE RISK
2022-03-17 CVE-2021-44906 Unspecified vulnerability in Substack Minimist
Minimist <=1.2.5 is vulnerable to Prototype Pollution via file index.js, function setKey() (lines 69-95).
network
low complexity
substack
critical
9.8
2020-03-11 CVE-2020-7598 minimist before 1.2.2 could be tricked into adding or modifying properties of Object.prototype using a "constructor" or "__proto__" payload.
network
substack opensuse
6.8