漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Browserslist: Uncaught crash / prototype write via untrusted browserslist-stats.json custom stats (normalizeStats)
Vulnerability Description
Browserslist is a configuration tool for sharing target browsers and Node.js versions between front-end tools. Prior to 4.28.7, normalizeStats() in node.js, reached unconditionally through getStat() and loadStat() on every browserslist() call, processes untrusted browserslist-stats.json, opts.stats, and CLI --stats data with an unguarded for...in loop and plain-object bracket access and assignment, allowing inherited Object.prototype keys including __proto__, toString, valueOf, constructor, hasOwnProperty, and isPrototypeOf to cause an uncaught TypeError or modify the prototype of the returned normalized object. This issue is fixed in version 4.28.7.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
CWE-1321
Vulnerability Title
Browserslist 输入验证错误漏洞
Vulnerability Description
Browserslist是Browserslist组织的一款浏览器兼容性配置工具。 Browserslist 4.28.7之前版本存在安全漏洞,该漏洞源于normalizeStats()函数处理不受信任的browserslist-stats.json、opts.stats和CLI --stats数据时,未防护的for...in循环和普通对象括号访问及赋值,允许继承的Object.prototype键(包括__proto__、toString等)导致未捕获的TypeError或修改返回对象的原型。
CVSS Information
N/A
Vulnerability Type
N/A