All versions of the package progressbar.js are vulnerable to Prototype Pollution via the function extend() in the file utils.js.
References
Configurations
History
No history.
Information
Published : 2023-06-12 05:15
Updated : 2025-01-06 17:15
NVD link : CVE-2023-26133
Mitre link : CVE-2023-26133
CVE.ORG link : CVE-2023-26133
JSON object : View
Products Affected
progressbar.js_project
- progressbar.js
CWE
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')