CVE-2024-24293

A Prototype Pollution issue in MiguelCastillo @bit/loader v.10.0.3 allows an attacker to execute arbitrary code via the M function e argument in index.js.
Configurations

No configuration.

History

21 Nov 2024, 08:59

Type Values Removed Values Added
References () https://gist.github.com/tariqhawis/986fb1c9da6be526fb2656ba8d194b7f - () https://gist.github.com/tariqhawis/986fb1c9da6be526fb2656ba8d194b7f -

20 Aug 2024, 14:35

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 8.8
Summary
  • (es) Un problema de contaminación de prototipo en MiguelCastillo @bit/loader v.10.0.3 permite a un atacante ejecutar código arbitrario a través de la función M y el argumento en index.js.
CWE CWE-1321

20 May 2024, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-20 18:15

Updated : 2024-11-21 08:59


NVD link : CVE-2024-24293

Mitre link : CVE-2024-24293

CVE.ORG link : CVE-2024-24293


JSON object : View

Products Affected

No product.

CWE
CWE-1321

Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')