Mihai Bazon

2 exploits Active since Oct 2022
CVE-2022-37598 WRITEUP CRITICAL WRITEUP
UglifyJS 3.13.2 - Prototype Pollution via DEFNODE Function Name Variable
Prototype pollution vulnerability in function DEFNODE in ast.js in mishoo UglifyJS 3.13.2 via the name variable in ast.js. NOTE: the vendor considers this an invalid report.
CVSS 9.8
CVE-2022-37598 WRITEUP CRITICAL WRITEUP
UglifyJS 3.13.2 - Prototype Pollution via DEFNODE Function Name Variable
Prototype pollution vulnerability in function DEFNODE in ast.js in mishoo UglifyJS 3.13.2 via the name variable in ast.js. NOTE: the vendor considers this an invalid report.
CVSS 9.8