Description
Prototype pollution vulnerability via .parse() in Plist before v3.0.4 allows attackers to cause a Denial of Service (DoS) and may lead to remote code execution.
Remediation
References
https://github.com/TooTallNate/plist.js/issues/114
Related Vulnerabilities
CVE-2023-36477 Vulnerability in maven package org.xwiki.contrib:application-ckeditor-ui
CVE-2021-42697 Vulnerability in maven package com.typesafe.akka:akka-http_2.13
CVE-2021-23379 Vulnerability in npm package portkiller
CVE-2022-45206 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core