Fallos del tipo CWE-1321

304 resultados
CVE-2023-0163HIGHPrototype Pollution in convictEPSS 0.3%CVE-2026-44483HIGHRVF: Prototype pollution in @rvf/set-get reachable via @rvf/core preprocessFormData (HTTP form data)EPSS 0.3%CVE-2026-49252CRITICALdeepstream is vulnerable to prototype pollutionEPSS 0.3%CVE-2026-42044MEDIUMAxios: Invisible JSON Response Tampering via Prototype Pollution Gadget in `parseReviver`EPSS 0.3%CVE-2026-44292MEDIUMprotobufjs: Prototype injection in generated message constructorsEPSS 0.3%CVE-2026-25521CRITICALLocutus is vulnerable to Prototype PollutionEPSS 0.3%CVE-2026-54306MEDIUMn8n: Prototype Pollution enables confused-deputy execution via public webhooksEPSS 0.3%CVE-2026-23736HIGHseroval Affected by Prototype Pollution via JSON DeserializationEPSS 0.2%CVE-2026-53609CRITICALApostrophe has Server-Side Prototype Pollution in apos.util.set via patch operators that leads to process-wide authorization bypassEPSS 0.2%CVE-2026-27524LOWOpenClaw < 2026.2.21 - Prototype Pollution via Debug Override PathEPSS 0.2%CVE-2026-40190MEDIUMLangSmith Client SDKs has Prototype Pollution in langsmith-sdk via Incomplete `__proto__` Guard in Internal lodash `set()`EPSS 0.2%CVE-2026-33916MEDIUMHandlebars.js has Prototype Pollution Leading to XSS through Partial Template InjectionEPSS 0.2%CVE-2026-31865MEDIUMElysia Cookie Value Prototype PollutionEPSS 0.2%CVE-2026-44489LOWAxios: Proxy-Authorization Header Injection via Prototype Pollution — Incomplete Null-Prototype FixEPSS 0.2%CVE-2026-44495HIGHAxios: Credential Theft and Response Hijacking via Prototype Pollution Gadget in Config MergeEPSS 0.2%CVE-2026-4239MEDIUMLagom WHMCS Template Datatables prototype pollutionEPSS 0.2%CVE-2026-41238MEDIUMDOMPurify: Prototype Pollution to XSS Bypass via CUSTOM_ELEMENT_HANDLING FallbackEPSS 0.2%CVE-2024-36578MEDIUMakbr update 1.0.0 is vulnerable to Prototype Pollution via update/index.js.EPSS 0.2%CVE-2025-34146HIGHnyariv sandboxjs 0.8.23 Prototype Pollution Sandbox Escape DoSEPSS 0.2%CVE-2024-2495MEDIUMCryptographic key in plain text vulnerability in FriendlyElec's FriendlyWrtEPSS 0.2%