Source |
The Hacker News |
Identifiant |
1195785 |
Date de publication |
2019-07-09 09:08:05 (vue: 2019-07-09 19:00:28) |
Titre |
Unpatched Prototype Pollution Flaw Affects All Versions of Popular Lodash Library |
Texte |
Lodash, a popular npm library used by more than 4 million projects on GitHub alone, is affected by a high severity security vulnerability that could allow attackers to compromise the security of affected services using the library and their respective user base.
Lodash is a JavaScript library that contains tools to simplify programming with strings, numbers, arrays, functions, and objects, |
Notes |
|
Envoyé |
Oui |
Condensat |
affected affects all allow alone arrays attackers base compromise contains could flaw functions github high javascript library lodash million more npm numbers objects pollution popular programming projects prototype respective security services severity simplify strings than tools unpatched used user using versions vulnerability |
Tags |
Vulnerability
|
Stories |
|
Move |
|