VYPR

Sds

by Sds Project

CVEs (2)

  • CVE-2020-7618MedApr 7, 2020
    risk 0.35cvss 5.3epss 0.01

    sds through 3.2.0 is vulnerable to Prototype Pollution.The library could be tricked into adding or modifying properties of the 'Object.prototype' by abusing the 'set' function located in 'js/set.js'.

  • CVE-2022-25862MedMay 13, 2022
    risk 0.26cvss 4.0epss 0.01

    This affects the package sds from 0.0.0. The library could be tricked into adding or modifying properties of the Object.prototype by abusing the set function located in js/set.js. **Note:** This vulnerability derives from an incomplete fix to…