• CVE-2022-24304 | Automattic Mongoose up to 6.4.5 lib/schema.js prototy

    From Security Bot@2:467/888.88 to All on Fri Oct 28 03:10:08 2022


    Title: CVE-2022-24304 | Automattic Mongoose up to 6.4.5 lib/schema.js prototype pollution
    Description: A vulnerability was found in Automattic Mongoose up to 6.4.5 and classified as problematic. Affected by this issue is some unknown functionality in the library lib/schema.js. The manipulation leads to improperly controlled modification of object prototype attributes ('prototype pollution').
    Link: https://vuldb.com/?id.207374
    Fri, 26 Aug 2022 19:26:15 +0200


    --- The information is for informational purposes only.
    * Origin: Read us with http://winpoint.org/ (2:467/888.88)