High severity8.8NVD Advisory· Published Jul 1, 2024· Updated Apr 15, 2026
CVE-2024-38991
CVE-2024-38991
Description
akbr patch-into v1.0.1 was discovered to contain a prototype pollution via the function patchInto. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- github.com/advisories/GHSA-gh4x-qv3p-m9pmghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2024-38991ghsaADVISORY
- github.com/akbr/patch-intoghsaPACKAGE
- gist.github.com/mestrtee/8851413e3b33a96f191f0e9c81706532nvdWEB
News mentions
0No linked articles in our index yet.