Description
Prototype pollution vulnerability via .parse() in Plist before v3.0.4 allows attackers to cause a Denial of Service (DoS) and may lead to remote code execution.
Remediation
References
https://github.com/TooTallNate/plist.js/issues/114
Related Vulnerabilities
CVE-2023-47324 Vulnerability in maven package org.silverpeas.core:silverpeas-core-rs
CVE-2021-3629 Vulnerability in maven package io.undertow:undertow-core
CVE-2020-7736 Vulnerability in npm package bmoor
CVE-2022-2390 Vulnerability in maven package com.google.android.gms:play-services-basement
CVE-2012-5784 Vulnerability in maven package org.apache.axis:axis