VYPR
Critical severity9.8OSV Advisory· Published Nov 12, 2020· Updated Jun 17, 2026

CVE-2020-28271

CVE-2020-28271

Description

Prototype pollution vulnerability in 'deephas' versions 1.0.0 through 1.0.5 allows attacker to cause a denial of service and may lead to remote code execution.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
deephasnpm
>= 1.0.0, <= 1.0.5

Affected products

3
  • Sharpred/DeephasOSV2 versions
    v1.0,1, v1.0.4.release, v1.0.4.update+ 1 more
    • (no CPE)range: v1.0,1, v1.0.4.release, v1.0.4.update
    • cpe:2.3:a:sharpred:deephas:*:*:*:*:*:node.js:*:*range: >=1.0.0,<=1.0.5
  • ghsa-coords
    Range: >= 1.0.0, <= 1.0.5

Patches

Vulnerability mechanics

References

5

News mentions

0

No linked articles in our index yet.