{"id":"GHSA-f3pp-32qc-36w4","summary":"Prototype Pollution in jointjs","details":"This affects the package jointjs before 3.4.2. A type confusion vulnerability can lead to a bypass of CVE-2020-28480 when the user-provided keys used in the path parameter are arrays in the setByPath function.","aliases":["CVE-2021-23444"],"modified":"2025-01-14T09:12:13.266436Z","published":"2021-09-22T20:36:34Z","database_specific":{"cwe_ids":["CWE-1321","CWE-843"],"severity":"MODERATE","github_reviewed":true,"github_reviewed_at":"2021-09-22T14:30:35Z","nvd_published_at":"2021-09-21T17:15:00Z"},"references":[{"type":"WEB","url":"https://github.com/clientIO/joint/pull/1514"},{"type":"WEB","url":"https://github.com/clientIO/joint/commit/e5bf89efef6d5ea572d66870ffd86560de7830a8"},{"type":"PACKAGE","url":"https://github.com/clientIO/joint"},{"type":"WEB","url":"https://github.com/clientIO/joint/releases/tag/v3.4.2"},{"type":"WEB","url":"https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSBOWER-1655817"},{"type":"WEB","url":"https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-1655816"},{"type":"WEB","url":"https://snyk.io/vuln/SNYK-JS-JOINTJS-1579578"}],"affected":[{"package":{"name":"jointjs","ecosystem":"npm","purl":"pkg:npm/jointjs"},"ranges":[{"type":"SEMVER","events":[{"introduced":"0"},{"fixed":"3.4.2"}]}],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2021/09/GHSA-f3pp-32qc-36w4/GHSA-f3pp-32qc-36w4.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:L"}]}