Prototype Pollution in jquery-deparam 0.5.1: Unauthorized Modification of Object Prototype Attributes

Prototype Pollution in jquery-deparam 0.5.1: Unauthorized Modification of Object Prototype Attributes

CVE-2021-20087 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in jquery-deparam 0.5.1 allows a malicious user to inject properties into Object.prototype.

Learn more about our User Device Pen Test.