← Back to browse · API

CVE-2021-3918

Severity
CRITICAL
CVSS
9.8
EPSS
0.03563
Risk score
40.45
CISA KEV
No
PoC
No
Published
2021-11-13
Modified
2025-01-17
First seen
2026-08-07
Aliases
EUVD-2021-2320, GHSA-896R-F27R-55MW
Products
kriszyp:kriszyp/json-schema unspecified ≤0.3.0
Sources
euvd EUVD-2021-2320

Description

json-schema is vulnerable to Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')

References