Description
vConsole v3.15.0 was discovered to contain a prototype pollution due to incorrect key and value resolution in setOptions in core.ts.
Remediation
References
https://cwe.mitre.org/data/definitions/1321.html
https://github.com/Tencent/vConsole/issues/616
Related Vulnerabilities
CVE-2022-3978 Vulnerability in npm package nodebb
CVE-2022-36097 Vulnerability in maven package org.xwiki.platform:xwiki-platform-attachment-ui
CVE-2019-10793 Vulnerability in maven package org.webjars.bower:dot-object
CVE-2021-28165 Vulnerability in maven package org.eclipse.jetty:jetty-io
CVE-2023-51075 Vulnerability in maven package cn.hutool:hutool-core