CVE-2024-6783
MEDIUMVue 2.0.0-2.7.15 - Cross-Site Scripting via Prototype Pollution
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-6783. PoCs published by HORKimhab.
AI-analyzed exploit summary The repository contains only placeholder files (README.md, LICENSE, .gitignore, and a template file) with no actual exploit code or technical details about CVE-2024-6783. The README is a generic template with no specific information about the vulnerability.
Description
A vulnerability has been discovered in Vue, that allows an attacker to perform XSS via prototype pollution. The attacker could change the prototype chain of some properties such as `Object.prototype.staticClass` or `Object.prototype.staticStyle` to execute arbitrary JavaScript code.
Exploits (1)
The repository contains only placeholder files (README.md, LICENSE, .gitignore, and a template file) with no actual exploit code or technical details about CVE-2024-6783. The README is a generic template with no specific information about the vulnerability.
References (3)
Scores
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N