← Back

Madlib Object Utils

madlib-object-utils

Vendor: Springtree • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Springtree
1Madlib Object Utils
Jun 17, 2026
Apr 15, 2022
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
The package madlib-object-utils before 0.1.8 are vulnerable to Prototype Pollution via the setValue method, as it allows an attacker to merge object prototypes into it. *Note:* This vulnerability derives from an incomple...Show more
The package madlib-object-utils before 0.1.8 are vulnerable to Prototype Pollution via the setValue method, as it allows an attacker to merge object prototypes into it. *Note:* This vulnerability derives from an incomplete fix of [CVE-2020-7701](https://security.snyk.io/vuln/SNYK-JS-MADLIBOBJECTUTILS-598676)Show less
1Springtree
1Madlib Object Utils
Jun 17, 2026
Aug 14, 2020
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
madlib-object-utils before 0.1.7 is vulnerable to Prototype Pollution via setValue.