9.8
CVSSv3

CVE-2023-46308

Published: 03/01/2024 Updated: 09/01/2024
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

In Plotly plotly.js prior to 2.25.2, plot API calls have a risk of __proto__ being polluted in expandObjectPaths or nestedProperty.

Vulnerable Product Search on Vulmon Subscribe to Product

plotly plotly.js