Related Vulnerabilities: CVE-2022-2200  

A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes the issue of if an attacker corrupted an object prototype, they could set undesired attributes on a JavaScript object, leading to privileged code execution.

Description

A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes the issue of if an attacker corrupted an object prototype, they could set undesired attributes on a JavaScript object, leading to privileged code execution.

Additional Information

  • Bugzilla 2102168: CVE-2022-2200 Mozilla: Undesired attributes could be set as part of prototype pollution
  • CWE-1321: Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
  • FAQ: Frequently asked questions about CVE-2022-2200