Description
vConsole v3.15.0 was discovered to contain a prototype pollution due to incorrect key and value resolution in setOptions in core.ts.
Remediation
References
https://cwe.mitre.org/data/definitions/1321.html
https://github.com/Tencent/vConsole/issues/616
Related Vulnerabilities
CVE-2022-31053 Vulnerability in maven package com.clever-cloud:biscuit-java
CVE-2023-33202 Vulnerability in maven package org.bouncycastle:bcprov-jdk18on
CVE-2015-8862 Vulnerability in maven package org.webjars.bower:mustache
CVE-2022-25921 Vulnerability in npm package morgan-json
CVE-2020-7656 Vulnerability in maven package org.webjars.bowergithub.jquery:jquery