8.8
CVSSv3

CVE-2021-20088

Published: 23/04/2021 Updated: 08/08/2023
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 578
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') in mootools-more 1.6.0 allows a malicious user to inject properties into Object.prototype.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mootools mootools-more 1.6.0

Github Repositories

Client Prototype Pollution Detect Cloned from githubcom/ku-plrg-classroom/js-mutest CVE-2021-20084 CVE-2021-20086 CVE-2021-20087 CVE-2021-20088 위의 CVE 취약 패턴을 파악하여 AST tree를 통해 Client Side Prototype Pollution 취약점을 탐지한느 것을 목표로함