CVE-2020-7598
11.03.2020, 23:15
minimist before 1.2.2 could be tricked into adding or modifying properties of Object.prototype using a "constructor" or "__proto__" payload.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| substack | minimist | 𝑥 < 1.2.2 |
| opensuse | leap | 15.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| nodejs10 |
| ||||||||||
| nodejs10-devel |
| ||||||||||
| nodejs10-docs |
| ||||||||||
| nodejs8 |
| ||||||||||
| nodejs8-devel |
| ||||||||||
| nodejs8-docs |
| ||||||||||
| npm10 |
| ||||||||||
| npm8 |
|