NA

CVE-2023-30533

Published: 24/04/2023 Updated: 07/09/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

SheetJS Community Edition prior to 0.19.3 allows Prototype Pollution via a crafted file. In other words. 0.19.2 and previous versions are affected, whereas 0.19.3 and later are unaffected.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sheetjs sheetjs

Github Repositories

CVE-2023-30533

POC - CVE-2023-30533 A POC for CVE-2023-30533 Copied as per: cdnsheetjscom/advisories/CVE-2023-30533: All releases of SheetJS Community Edition up to version 0192 are affected This includes: - scripts and modules on the SheetJS CDN through version 0192 [2] - modules published with the name `xlsx` on npmjscom [3] - scripts on third-party CDNs that pull fro