Security Advisory

CVE-2020-7637

5.3
MEDIUM

Vulnerability Description

class-transformer before 0.3.1 allow attackers to perform Prototype Pollution. The classToPlainFromExist function could be tricked into adding or modifying properties of Object.prototype using a __proto__ payload.
Published Date April 6, 2020
Official Source NIST NVD Advisory