Critical severity9.8NVD Advisory· Published Mar 17, 2022· Updated Jun 17, 2026
CVE-2021-44908
CVE-2021-44908
Description
SailsJS Sails.js <=1.4.0 is vulnerable to Prototype Pollution via controller/load-action-modules.js, function loadActionModules().
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
sailsnpm | <= 1.5.2 | — |
Affected products
3- SailsJS/Sails.jsdescription
Patches
Vulnerability mechanics
References
6- github.com/balderdashy/sails/issues/7209nvdExploitIssue TrackingPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-8v3j-jfg3-v3fvghsaADVISORY
- github.com/balderdashy/sails/blob/master/lib/app/private/controller/load-action-modules.jsnvdThird Party AdvisoryWEB
- nvd.nist.gov/vuln/detail/CVE-2021-44908ghsaADVISORY
- github.com/Marynk/JavaScript-vulnerability-detection/blob/main/sailsJS%20PoC.zipnvdBroken LinkWEB
- github.com/balderdashy/sails/commit/7c5379a656bb305c958df1dcc2b51a9668830358ghsaWEB
News mentions
0No linked articles in our index yet.