Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-p3pg-64pv-v7jg: Prototype Pollution in jsgui-lang-essentials

All versions of package jsgui-lang-essentials are vulnerable to Prototype Pollution due to allowing all Object attributes to be altered, including their magical attributes such as proto, constructor and prototype.

ghsa
#js#git

Prototype Pollution in jsgui-lang-essentials

High severity GitHub Reviewed Published May 3, 2022 • Updated May 20, 2022

ghsa: Latest News

GHSA-49cc-xrjf-9qf7: SFTPGo allows administrators to restrict command execution from the EventManager