Skip to content

[CVE-2022-37264]/ Prototype pollution found in main.js #1533

Description

@secdevlpr26

Prototype pollution vulnerability in stealjs steal 2.2.4 via the optionName variable in main.js.

The prototype pollution vulnerability can be mitigated with several best practices described here: https://learn.snyk.io/lessons/prototype-pollution/javascript/

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Fields

    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions