Vulnerabilities (CVE)

Filtered by vendor Allpro Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-36572 1 Allpro 1 Formmanager Data Handler 2024-11-21 N/A 9.8 CRITICAL
Prototype pollution in allpro form-manager 0.7.4 allows attackers to run arbitrary code and cause other impacts via the functions setDefaults, mergeBranch, and Object.setObjectValue.