CVE-2020-7743 PUBLISHED CVSS 7.300000190734863 HIGH

The package mathjs before 7.5.1 are vulnerable to Prototype Pollution via the deepExtend function that runs upon configuration updates.

EPSS 1.68% · 82.1th percentile

Risk Scores

CVSS v3.1
7.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L
EPSS Score
1.68%
82.1th percentile

Affected Products

VendorProductVersions
mathjsmathjs0
npmmathjs0
n/amathjsunspecified

Timeline

References

Open in Interactive Console →