• CVE-2022-37264 | stealjs 2.2.4 main.js optionName prototype pollution

    From Security Bot@2:467/888.88 to All on Mon Jun 5 18:10:14 2023


    Title: CVE-2022-37264 | stealjs 2.2.4 main.js optionName prototype pollution (ID 1533)
    Description: A vulnerability classified as critical has been found in stealjs 2.2.4. This affects an unknown part of the file main.js. The manipulation of the argument optionName leads to improperly controlled modification of object prototype attributes ('prototype pollution').
    Link: https://vuldb.com/?id.208701
    Thu, 15 Sep 2022 22:09:30 +0200


    --- The information is for informational purposes only.
    * Origin: Read us with http://winpoint.org/ (2:467/888.88)