CVE-2020-7598 PUBLISHED

minimist before 1.2.2 could be tricked into adding or modifying properties of Object.prototype using a "constructor" or "__proto__" payload.

EPSS 0.25% · 48.4th percentile

Risk Scores

EPSS Score
0.25%
48.4th percentile

Affected Products

VendorProductVersions
Ubuntu:18.04:LTSnode-minimist0, 1.2.0-1
Ubuntu:16.04:LTSnode-minimist0, 1.1.3-1, 1.2.0-1

Timeline

References

Open in Interactive Console →