CVE-2024-21512

HIGH8.2EPSS 68.3%

mysql2 vulnerable to Prototype Pollution

發布日:2024/5/30修改日:2026/2/4
也稱為:GHSA-pmh2-wpjm-fj45CGA-7553-6c2q-m28m

描述

Versions of the package mysql2 before 3.9.8 are vulnerable to Prototype Pollution due to improper user input sanitization passed to fields and tables when using nestTables.

受影響套件(1)

CVSS 分數

來源版本嚴重程度向量
osvCVSS 3.1HIGH8.2CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L

參考連結(7)