Description
Prototype pollution vulnerability in the TypeORM package < 0.2.25 may allow attackers to add or modify Object properties leading to further denial of service or SQL injection attacks.
Remediation
References
https://hackerone.com/reports/869574
Related Vulnerabilities
CVE-2019-14653 Vulnerability in maven package org.webjars.npm:editor.md
CVE-2021-45456 Vulnerability in maven package org.apache.kylin:kylin-server-base
CVE-2023-6563 Vulnerability in maven package org.keycloak:keycloak-model-jpa
CVE-2020-6428 Vulnerability in npm package electron
CVE-2020-7792 Vulnerability in maven package org.webjars:mout