9.8
CVSSv3

CVE-2021-3918

Published: 13/11/2021 Updated: 03/02/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

json-schema is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

json-schema project json-schema

debian debian linux 10.0

Vendor Advisories

Debian Bug report logs - #999765 node-json-schema: CVE-2021-3918 - Prototype Pollution Package: src:node-json-schema; Maintainer for src:node-json-schema is Debian Javascript Maintainers <pkg-javascript-devel@listsaliothdebianorg>; Reported by: Neil Williams <codehelp@debianorg> Date: Tue, 16 Nov 2021 11:09:01 UTC ...
Synopsis Important: Red Hat Advanced Cluster Management 25 security updates, images, and bug fixes Type/Severity Security Advisory: Important Topic Red Hat Advanced Cluster Management for Kubernetes 250 is now generally availableRed Hat Product Security has rated this update as having a security impactof Important A Common Vulnerability ...
Synopsis Moderate: nodejs:14 security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for the nodejs:14 module is now available for Red Hat Enterprise Linux 8Red Hat Product Secu ...
Synopsis Moderate: rh-nodejs12-nodejs security, bug fix, and enhancement update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for rh-nodejs12-nodejs is now available for Red Hat Software CollectionsRed Hat Pro ...
Synopsis Important: Red Hat Advanced Cluster Management 236 security updates and bug fixes Type/Severity Security Advisory: Important Topic Red Hat Advanced Cluster Management for Kubernetes 236 General Availabilityrelease images, which provide security updates and bug fixes Description Red Hat Advanced Cluster Management for Kubernete ...
Synopsis Important: Red Hat Advanced Cluster Management 242 security updates and bug fixes Type/Severity Security Advisory: Important Topic Red Hat Advanced Cluster Management for Kubernetes 242 General Availabilityrelease images This update provides security fixes, fixes bugs, and updates the container imagesRed Hat Product Security ha ...
Synopsis Moderate: RHOSDT 260 operator/operand containers Security Update Type/Severity Security Advisory: Moderate Topic An update is now available for Red Hat Openshift distributed tracing 260Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Scoring System (CVSS) base score, w ...

Github Repositories

Tool for validating Grafana community plugins

Grafana Plugin Validator This tool helps speed up the process of publishing plugins to Grafanacom It runs a series of analyzers to ensure plugins are following best practices, checking for security and structural issues, as well as specific requirements related to publishing A general overview of these requirements can be found here: grafanacom/docs/grafana/lates

Khulnasoft Plugin Validator This tool helps speed up the process of publishing plugins to Khulnasoftcom It runs a series of analyzers to ensure plugins are following best practices, checking for security and structural issues, as well as specific requirements related to publishing A general overview of these requirements can be found here: grafanacom/docs/grafana

Who am I Yoshino-s 百度基础安全部 Blog: blogyoshino-sonline/ 🔨 What did I did? 🐞 CVEs CVE-2018-5771 Tenda AC6 Remote Command Execution CVE-2021-21315 systeminformation Command Injection CVE-2021-32736 thinkjs Prototype Pollution CVE-2021-3918 json-schema Prototype Pollution 🚩 Status 🙌 广告位和友链招租