Filtered by vendor Substack Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2021-44906 1 Substack 1 Minimist 2024-06-21 9.8 Critical
Minimist <=1.2.5 is vulnerable to Prototype Pollution via file index.js, function setKey() (lines 69-95).
CVE-2020-7598 2 Opensuse, Substack 2 Leap, Minimist 2022-04-22 5.6 Medium
minimist before 1.2.2 could be tricked into adding or modifying properties of Object.prototype using a "constructor" or "__proto__" payload.