
CVE-2021-43138
- Reference to the description:
- Description:
- In Async before 2.6.4 and 3.x before 3.2.2, a malicious user can obtain privileges via the mapValues() method, aka lib/internal/iterator.js createObjectIterator prototype pollution.
- Last updated date:
- 06/21/2024
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 04/13/2022
- Reference url to background