amoyjs amoy common v1.0.10 was discovered to contain a prototype pollution via the function extend. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.
References
| Link | Resource |
|---|---|
| https://gist.github.com/mestrtee/02091aa86c6c14c29b9703642439dd03 | Exploit Third Party Advisory |
| https://gist.github.com/mestrtee/02091aa86c6c14c29b9703642439dd03 | Exploit Third Party Advisory |
Configurations
History
07 Jul 2025, 20:01
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Amoyjs common
Amoyjs |
|
| CPE | cpe:2.3:a:amoyjs:common:1.0.10:*:*:*:*:*:*:* | |
| References | () https://gist.github.com/mestrtee/02091aa86c6c14c29b9703642439dd03 - Exploit, Third Party Advisory |
Information
Published : 2024-07-01 13:15
Updated : 2025-07-07 20:01
NVD link : CVE-2024-38994
Mitre link : CVE-2024-38994
CVE.ORG link : CVE-2024-38994
JSON object : View
Products Affected
amoyjs
- common
CWE
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
