7.5
CVSSv3

CVE-2023-26113

Published: 18/03/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

Versions of the package collection.js prior to 6.8.1 are vulnerable to Prototype Pollution via the extend function in Collection.js/dist/node/iterators/extend.js.

Vulnerable Product Search on Vulmon Subscribe to Product

collection.js project collection.js