CVE-2021-23449
18.10.2021, 17:15
This affects the package vm2 before 3.9.4 via a Prototype Pollution attack vector, which can lead to execution of arbitrary code on the host machine.
Vendor | Product | Version |
---|---|---|
vm2_project | vm2 | 𝑥 < 3.9.4 |
𝑥
= Vulnerable software versions
References