Description

A Prototype Pollution issue in Blackprint @blackprint/engine v.0.9.0 allows an attacker to execute arbitrary code via the _utils.setDeepProperty function of engine.min.js.

INFO

Published Date :

2024-05-20T16:25:50.992Z

Last Modified :

2025-02-13T15:47:09.183Z

Source :

mitre
AFFECTED PRODUCTS

The following products are affected by CVE-2024-24294 vulnerability.

Vendors Products
Blackprint
  • Blackprint Engine
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2024-24294.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact