Description
Improperly Controlled Modification of Object Prototype Attributes (‘Prototype Pollution’) in mootools-more 1.6.0 allows a malicious user to inject properties into Object.prototype.
Recommendation
No fix is available yet. Followings are affected versions:
- <= 1.6.0
References
Could your website be exposed too?
SmartScanner can check your website for mootools-more vulnerable to prototype pollution and gives you actionable findings to investigate.
Start a free scanRelated Issues
- deep-defaults vulnerable to prototype pollution - CVE-2021-25944
- json-schema is vulnerable to Prototype Pollution - CVE-2021-3918
- Prototype Pollution in mootools - CVE-2021-23432
- dustjs-linkedin vulnerable to Prototype Pollution - CVE-2021-4264
You might also like:
See something that needs correcting? Let us knowUpdated April 22, 2024


