CVE-2021-20085

All FrameworksBackboneCWE-OtherCVE-2021-20085

CVE-2021-20085

State: PUBLISHED · Published: 2021-04-23 · Updated: 2024-08-03 · Assigner: tenable
Description
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in backbone-query-parameters 0.4.0 allows a malicious user to inject properties into Object.prototype.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2021/20xxx/CVE-2021-20085.json