An issue in OneTrust SDK v.6.33.0 allows a local attacker to cause a denial of service via the Object.setPrototypeOf, __proto__, and Object.assign components. NOTE: this is disputed by the Supplier who does not agree it is a prototype pollution vulnerability.
References
Configurations
No configuration.
History
25 Jul 2025, 21:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
26 Jun 2025, 18:57
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-06-25 16:15
Updated : 2025-07-25 21:15
NVD link : CVE-2024-57708
Mitre link : CVE-2024-57708
CVE.ORG link : CVE-2024-57708
JSON object : View
Products Affected
No product.