DirectorySecurity Advisories
Sign In
Security Advisories

CGA-fggr-qmgm-5v3m

Published

Last updated

https://images.chainguard.dev/security/CGA-fggr-qmgm-5v3m
Package

jitsucom-jitsu

Latest Update
Pending upstream fix
Aliases
  • CVE-2022-37601
  • GHSA-76p3-8jx3-jpfq

Severity

9.8

Critical

CVSS V3

Summary

Prototype pollution in webpack loader-utils

Description

Prototype pollution vulnerability in function parseQuery in parseQuery.js in webpack loader-utils prior to version 2.0.3 via the name variable in parseQuery.js.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images