Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-wc4x-qmr2-rj8h: steal vulnerable to Prototype Pollution via alias variable

Prototype pollution vulnerability in stealjs steal via the alias variable in babel.js.

ghsa
#vulnerability#js#git

steal vulnerable to Prototype Pollution via alias variable

Moderate severity GitHub Reviewed Published Sep 21, 2022 • Updated Sep 21, 2022

ghsa: Latest News

GHSA-7rh7-c77v-6434: OAuth2-Proxy has authentication bypass in oauth2-proxy skip_auth_routes due to Query Parameter inclusion