CVE-2024-24294: Blackprint @blackprint/engine Prototype Pollution issue
A Prototype Pollution issue in Blackprint @blackprint/engine 0.8.12 through 0.9.1 allows an attacker to execute arbitrary code via the _utils.setDeepProperty
function of engine.min.js
.
References
Detect and mitigate CVE-2024-24294 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →