CVE-2021-23449
EUVD-2021-225418.10.2021, 17:15
This affects the package vm2 before 3.9.4 via a Prototype Pollution attack vector, which can lead to execution of arbitrary code on the host machine.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| vm2_project | vm2 | 𝑥 < 3.9.4 |
𝑥
= Vulnerable software versions
References