mirror of
https://github.com/0xMarcio/cve.git
synced 2026-06-04 01:28:01 +02:00
738 B
738 B
CVE-2021-23419
Description
This affects the package open-graph before 0.2.6. The function parse could be tricked into adding or modifying properties of Object.prototype using a proto or constructor payload.
POC
Reference
Github
No PoCs found on GitHub currently.