[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

252271

 
 

909

 
 

196835

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2018-16487 -- node-lodash

ID: oval:org.secpod.oval:def:1901349Date: (C)2019-03-05   (M)2023-12-20
Class: VULNERABILITYFamily: unix




A prototype pollution vulnerability was found in lodash <4.17.11 where the functions merge, mergeWith, and defaultsDeep can be tricked into adding or modifying properties of Object.prototype.

Platform:
Ubuntu 16.04
Ubuntu 18.10
Ubuntu 18.04
Product:
node-lodash
Reference:
CVE-2018-16487
CVE    1
CVE-2018-16487
CPE    4
cpe:/a:node-lodash:node-lodash
cpe:/o:ubuntu:ubuntu_linux:16.04
cpe:/o:ubuntu:ubuntu_linux:18.04
cpe:/o:ubuntu:ubuntu_linux:18.10
...

© SecPod Technologies