CVE-2021-23558

HIGH7.3EPSS 0.68%

Prototype Pollution in bmoor

Published: 2/1/2022Modified: 3/13/2026
Also known as:GHSA-4m8h-h59m-m34j

Description

The package bmoor before 0.10.1 is vulnerable to Prototype Pollution due to missing sanitization in set function. **Note:** This vulnerability derives from an incomplete fix in [CVE-2020-7736](https://security.snyk.io/vuln/SNYK-JS-BMOOR-598664)

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.3CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L

References (6)