Description
vConsole v3.15.0 was discovered to contain a prototype pollution due to incorrect key and value resolution in setOptions in core.ts.
Remediation
References
https://cwe.mitre.org/data/definitions/1321.html
https://github.com/Tencent/vConsole/issues/616
Related Vulnerabilities
CVE-2020-35490 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2023-45135 Vulnerability in maven package org.xwiki.platform:xwiki-platform-web-war
CVE-2022-24901 Vulnerability in npm package parse-server
CVE-2022-29002 Vulnerability in maven package com.xuxueli:xxl-job
CVE-2022-36883 Vulnerability in maven package org.jenkins-ci.plugins:git