Immer是Immer社区的一个基于Javascript的状态管理库。。 immer 9.0.6之前版本存在安全漏洞,该漏洞源于当path参数中使用的用户提供的密钥是数组时,可能导致绕过CVE-2020-28477。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | immer | unspecified ~ 9.0.6 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2021-23427 | 8.6 HIGH | Arbitrary File Write via Archive Extraction (Zip Slip) |
| CVE-2021-23428 | 8.6 HIGH | Directory Traversal |
| CVE-2021-23426 | 5.6 MEDIUM | Prototype Pollution |
| CVE-2021-23438 | 5.6 MEDIUM | Prototype Pollution |
| CVE-2021-39378 | Open Solutions For Education openSIS SQL注入漏洞 | |
| CVE-2021-40350 | Christie Digital DWU850-GS 授权问题漏洞 | |
| CVE-2021-35508 | TeraRecon AQNetClient安全漏洞 | |
| CVE-2021-39379 | Open Solutions For Education openSIS SQL注入漏洞 | |
| CVE-2021-39377 | Open Solutions For Education openSIS SQL注入漏洞 | |
| CVE-2021-39373 | Samsung H3安全漏洞 | |
| CVE-2021-40378 | comppro IP70 安全漏洞 | |
| CVE-2021-40352 | OpenEMR 日志信息泄露漏洞 | |
| CVE-2021-38703 | KPN Experia WiFi 安全漏洞 | |
| CVE-2020-9002 | iPortalis 输入验证错误漏洞 | |
| CVE-2020-9000 | iPortalis 资源管理错误漏洞 | |
| CVE-2021-33582 | Cyrus IMAP 加密问题漏洞 | |
| CVE-2021-37415 | ZOHO ManageEngine ServiceDesk Plus 访问控制错误漏洞 | |
| CVE-2021-36235 | Ivanti Workspace Control 授权问题漏洞 | |
| CVE-2021-40353 | Open Solutions For Education openSIS SQL注入漏洞 | |
| CVE-2020-20341 | Yzmcms 代码问题漏洞 |
Showing top 20 of 37 CVEs. View all on vendor page → →
No comments yet