High severity7.5NVD Advisory· Published Mar 28, 2025· Updated Jun 17, 2026
CVE-2024-57083
CVE-2024-57083
Description
A prototype pollution in the component Module.mergeObjects (redoc/bundles/redoc.lib.js:2) of redoc <= 2.2.0 allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
redocnpm | < 2.4.0 | 2.4.0 |
Affected products
3Patches
Vulnerability mechanics
References
4- github.com/Redocly/redoc/issues/2499nvdExploitIssue TrackingPatchWEB
- github.com/advisories/GHSA-9rhg-254w-fh9xghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2024-57083ghsaADVISORY
- github.com/Redocly/redoc/pull/2638ghsaWEB
News mentions
0No linked articles in our index yet.