← Back to browse
·
API
CVE-2020-7774
Severity
HIGH
CVSS
7.3
EPSS
0.69062
Risk score
53.37
CISA KEV
No
PoC
No
Published
2020-11-17
Modified
2024-09-16
First seen
2026-08-07
Aliases
EUVD-2021-0643, GHSA-C4W7-XM78-47VH
Products
n/a:y18n unspecified <5.0.5
Sources
euvd
EUVD-2021-0643
Description
The package y18n before 3.2.2, 4.0.1 and 5.0.5, is vulnerable to Prototype Pollution.
References
https://euvd.enisa.europa.eu/vulnerability/EUVD-2021-0643
https://snyk.io/vuln/SNYK-JS-Y18N-1021887
https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-1038306
https://github.com/yargs/y18n/pull/108
https://github.com/yargs/y18n/issues/96
https://www.oracle.com/security-alerts/cpuApr2021.html
https://cert-portal.siemens.com/productcert/pdf/ssa-389290.pdf