Untrusted Input Vulnerability in Mootools' Object.merge() Function

Untrusted Input Vulnerability in Mootools' Object.merge() Function

CVE-2021-23432 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

This affects all versions of package mootools. This is due to the ability to pass untrusted input to Object.merge()

Learn more about our Web Application Penetration Testing UK.