CVE-2020-7768
11.11.2020, 11:15
The package grpc before 1.24.4; the package @grpc/grpc-js before 1.1.8 are vulnerable to Prototype Pollution via loadPackageDefinition.
Vendor | Product | Version |
---|---|---|
grpc | grpc | 𝑥 < 1.1.8 |
grpc | grpc | 𝑥 < 1.24.2 |
𝑥
= Vulnerable software versions
References