CVE-2020-8125

Flaw in input validation in npm package klona version 1.1.0 and earlier may allow prototype pollution attack that may result in remote code execution or denial of service of applications using klona.
References
Link Resource
https://hackerone.com/reports/778414 Exploit Patch
Configurations

Configuration 1

cpe:2.3:a:klona_project:klona:*:*:*:*:*:node.js:*:*

Information

Published : 2020-02-04 08:15

Updated : 2020-02-06 06:48


NVD link : CVE-2020-8125

Mitre link : CVE-2020-8125

Products Affected
No products.
CWE