CVE-2019-18841

Published about 1 month ago
Category: Other
Source: GitHub
Severity: Moderate

Vulnerability in chartkick

A specially crafted response in data loaded via URL can cause prototype pollution in JavaScript.

CVSS Metrics
Access Vector Access Complexity Authentication Confidentiality Impact Integrity Impact Availability Impact
n/a n/a n/a n/a n/a n/a
Patched Versions

>= 3.3.0

Unaffected Versions

< 3.1.0

References

n/a