Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Versions of the package uplot before 1.6.31 are vulnerable to Prototype Pollution via the uplot.assign function due to missing check if the attribute resolves to the object prototype.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:L
Vulnerability Type
CWE-1321
Vulnerability Title
uPlot 安全漏洞
Vulnerability Description
uPlot是leeoniya个人开发者的一种快速、内存高效的基于 Canvas 2D 的图表,用于绘制时间序列、线条、面积、ohlc 和条形图。 uPlot 1.6.31之前版本存在安全漏洞,该漏洞源于缺少对属性是否解析为对象原型的检查。
CVSS Information
N/A
Vulnerability Type
N/A