CVE-2021-23807
EUVD-2021-227703.11.2021, 18:15
This affects the package jsonpointer before 5.0.0. A type confusion vulnerability can lead to a bypass of a previous Prototype Pollution fix when the pointer components are arrays.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| janl | jsonpointer | 𝑥 < 5.0.0 |
𝑥
= Vulnerable software versions
References