Description
vConsole v3.15.0 was discovered to contain a prototype pollution due to incorrect key and value resolution in setOptions in core.ts.
Remediation
References
https://cwe.mitre.org/data/definitions/1321.html
https://github.com/Tencent/vConsole/issues/616
Related Vulnerabilities
CVE-2020-7774 Vulnerability in npm package y18n
CVE-2017-18635 Vulnerability in npm package @novnc/novnc
CVE-2020-7633 Vulnerability in npm package apiconnect-cli-plugins
CVE-2018-20677 Vulnerability in maven package org.webjars.bower:bootstrap
CVE-2023-24188 Vulnerability in maven package com.bstek.ureport:ureport2-core