CVE-2020-8141
3Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackepss 2.1%
probabilidad de explotación
2.1%top 19% de las CVE
explotación observada
noninguna fuente lo reporta
The dot package v1.1.2 uses Function() to compile templates. This can be exploited by the attacker if they can control the given template or if they can control the value set on Object.prototype.
Productos afectados
n/a · dotReferencias
https://hackerone.com/reports/390929