High severity7.5NVD Advisory· Published Jun 16, 2021· Updated Jun 17, 2026
CVE-2020-24939
CVE-2020-24939
Description
Prototype pollution in Stampit supermixer 1.0.3 allows an attacker to modify the prototype of a base object which can vary in severity depending on the implementation.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
supermixernpm | < 1.0.5 | 1.0.5 |
Affected products
3- cpe:2.3:a:stampit:supermixer:1.0.3:*:*:*:*:*:*:*
- Stampit/supermixerdescription
Patches
Vulnerability mechanics
References
7- github.com/stampit-org/supermixer/issues/9nvdExploitIssue TrackingThird Party AdvisoryWEB
- hackerone.com/reports/959987nvdExploitIssue TrackingThird Party AdvisoryWEB
- cwe.mitre.org/data/definitions/1321.htmlnvdThird Party Advisory
- github.com/advisories/GHSA-7prf-vw4p-qr59ghsaADVISORY
- github.com/stampit-org/supermixer/compare/v1.0.4...v1.0.5nvdRelease NotesThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2020-24939ghsaADVISORY
- github.com/stampit-org/supermixer/commit/94dcc6fc45e0fed96187cb52aaffadf76dbbc0a3ghsaWEB
News mentions
0No linked articles in our index yet.