Versions of the package bun before 1.1.30 are vulnerable to Prototype Pollution due to improper input sanitization. An attacker can exploit this vulnerability through Bun's APIs that accept objects.
Metrics
Affected Vendors & Products
References
History
Wed, 18 Dec 2024 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Wed, 18 Dec 2024 06:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Versions of the package bun before 1.1.30 are vulnerable to Prototype Pollution due to improper input sanitization. An attacker can exploit this vulnerability through Bun's APIs that accept objects. | |
Weaknesses | CWE-1321 | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: snyk
Published: 2024-12-18T06:06:03.597Z
Updated: 2024-12-18T15:03:33.929Z
Reserved: 2023-12-22T12:33:20.128Z
Link: CVE-2024-21548

Updated: 2024-12-18T15:03:24.885Z

Status : Received
Published: 2024-12-18T06:15:23.360
Modified: 2024-12-18T15:15:09.947
Link: CVE-2024-21548

No data.