Description
vConsole v3.15.0 was discovered to contain a prototype pollution due to incorrect key and value resolution in setOptions in core.ts.
Remediation
References
https://cwe.mitre.org/data/definitions/1321.html
https://github.com/Tencent/vConsole/issues/616
Related Vulnerabilities
CVE-2023-37955 Vulnerability in maven package org.jenkins-ci.plugins:test-results-aggregator
CVE-2021-34428 Vulnerability in maven package org.eclipse.jetty:jetty-server
CVE-2021-33813 Vulnerability in maven package org.jdom:jdom
CVE-2020-36649 Vulnerability in maven package org.webjars.npm:papaparse
CVE-2020-9484 Vulnerability in maven package org.apache.tomcat:tomcat-catalina