CVE-2023-26102
All versions of the package rangy are vulnerable to Prototype Pollution when using the extend() function in file rangy-core.js.The function uses recursive merge which can lead an attacker to modify properties of the Object.prototype
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.77%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
All versions of the package rangy are vulnerable to Prototype Pollution when using the extend() function in file rangy-core.js.The function uses recursive merge which can lead an attacker to modify properties of the Object.prototype
- CVSS 3.1
- 8.2 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
- EPSS
- 0.77% probability · 53th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-1321
- Affected
- rangy project/rangy
- Source
- report@snyk.io
References
- https://github.com/timdown/rangy/issues/478Exploit, Issue Tracking, Third Party Advisory
- https://security.snyk.io/vuln/SNYK-JS-RANGY-3175702Exploit, Third Party Advisory
- https://github.com/timdown/rangy/issues/478Exploit, Issue Tracking, Third Party Advisory
- https://security.snyk.io/vuln/SNYK-JS-RANGY-3175702Exploit, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.