All versions of package dojo are vulnerable to Prototype Pollution via the setObject function.
2021-12-17T20:15:08.177
2024-11-21T05:51:46.953
Modified
CVSSv3.1: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | linuxfoundation | dojo | < 1.17.0 | Yes |
Application | oracle | communications_policy_management | 12.6.0.0.0 | Yes |
Application | oracle | primavera_unifier | ≤ 17.12 | Yes |
Application | oracle | primavera_unifier | 18.8 | Yes |
Application | oracle | primavera_unifier | 19.12 | Yes |
Application | oracle | primavera_unifier | 20.12 | Yes |
Application | oracle | primavera_unifier | 21.12 | Yes |
Application | oracle | weblogic_server | 12.2.1.4.0 | Yes |
Application | oracle | weblogic_server | 14.1.1.0.0 | Yes |
Operating System | debian | debian_linux | 10.0 | Yes |