The package asciitable.js before 1.0.3 are vulnerable to Prototype Pollution via the main function. Please note that some of the information in the bulletin is compiled from external, open-source reports and is not a direct result of CISA analysis.ĭirectory traversal vulnerability in post-edit.php in MiniCMS V1.10 allows remote attackers to include and execute arbitrary files via the state parameter. Patch information is provided when available. This information may include identifying information, values, definitions, and related links. Low: vulnerabilities with a CVSS base score of 0.0–3.9Įntries may include additional information provided by organizations and efforts sponsored by CISA. ![]()
0 Comments
Leave a Reply. |