You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Describe the bug
Potential issue with OpenSearch Dashboard image ( 2.3.0) and discovered the following issues:
Node.js unset-value module is vulnerable to a denial of service, caused by a prototype pollution flaw in the unset function
in index.js. By adding or modifying properties of Object.prototype using a proto or constructor payload, a remote
attacker could exploit this vulnerability to cause a denial of service condition.
Unset Value: Image contains unset value package version 1.0.1 and this has been resolved with version 2.0.1 [No reference to the CVE found]
The text was updated successfully, but these errors were encountered:
Describe the bug
Potential issue with OpenSearch Dashboard image ( 2.3.0) and discovered the following issues:
Node.js unset-value module is vulnerable to a denial of service, caused by a prototype pollution flaw in the unset function
in index.js. By adding or modifying properties of Object.prototype using a proto or constructor payload, a remote
attacker could exploit this vulnerability to cause a denial of service condition.
The text was updated successfully, but these errors were encountered: