ag-grid-enterprise v31.3.2 was discovered to contain a prototype pollution via the component _ModuleSupport.jsonApply. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.
2024-07-01T13:15:05.397
2025-05-01T14:07:52.540
Analyzed
CVSSv3.1: 6.3 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | ag-grid | ag-grid | < 31.3.4 | Yes |
Application | ag-grid | ag-grid | < 32.0.2 | Yes |
Application | ag-grid | ag_charts | < 9.3.2 | Yes |
Application | ag-grid | ag_charts | < 10.0.2 | Yes |