Hello.js
Hello.js Project · 2 CVEs
CVE-2021-26505
CRITICAL
Prototype pollution vulnerability in MrSwitch hello.js version 1.18.6, allows remote attackers to execute arbitrary cod…
Aug 11, 2023
CVE-2020-7741
CRITICAL
Cross-site Scripting (XSS)
Oct 6, 2020
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2021-26505 | Prototype pollution vulnerability in MrSwitch hello.js version 1.18.6, allows remote attackers to execute arbitrary code via hello.utils.extend function. | CRITICAL | 1.14% | Aug 11, 2023 |
| CVE-2020-7741 | Cross-site Scripting (XSS) | CRITICAL | 1.48% | Oct 6, 2020 |
Showing 1 to 2 of 2 CVEs