Vulnerability Database
Blog
FAQ
Docs
CVE-2022-1295
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2022-1295
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2022-1295.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2022-1295
Aliases
GHSA-vpgw-ffh3-648h
Published
2022-04-11T12:15:16Z
Modified
2025-01-08T13:59:18.108145Z
Severity
9.8 (Critical)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
[none]
Details
Prototype Pollution in GitHub repository alvarotrigo/fullpage.js prior to 4.0.2.
References
https://huntr.dev/bounties/3b9d450c-24ac-4037-b04d-4d4dafbf593a
https://github.com/alvarotrigo/fullpage.js/commit/bf62492a22e5d296e63c3ed918a42fc5645a0d48
Affected packages
Git
/
github.com/alvarotrigo/fullpage.js
Affected ranges
Type
GIT
Repo
https://github.com/alvarotrigo/fullpage.js
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
bf62492a22e5d296e63c3ed918a42fc5645a0d48
Fixed
bf62492a22e5d296e63c3ed918a42fc5645a0d48
Affected versions
2.*
2.0.7
2.2.1
2.4.1
2.4.3
2.4.6
2.4.7
2.4.8
2.4.8.1
2.4.9
2.5.0
2.5.1
2.5.2
2.5.3
2.5.4
2.5.5
2.5.6
2.5.7
2.5.8
2.5.9
2.6.0
2.6.1
2.6.2
2.6.3
2.6.4
2.6.5
2.6.6
2.6.7
2.6.8
2.6.9
2.7.0
2.7.1
2.7.2
2.7.3
2.7.4
2.7.5
2.7.6
2.7.7
2.7.8
2.7.9
2.8.0
2.8.1
2.8.2
2.8.3
2.8.4
2.8.5
2.8.6
2.8.7
2.8.8
2.8.9
2.9.0
2.9.1
2.9.1.1
2.9.2
2.9.3
2.9.4
2.9.5
2.9.6
2.9.7
3.*
3.0.1
3.0.2
3.0.3
3.0.4
3.0.5
3.0.6
3.0.7
3.0.8
3.0.9
3.1.0
3.1.1
3.1.2
v.*
v.2.0.1
v.2.2.8
v.2.7.5
v1.*
v1.7
v1.7.5
v1.7.6
CVE-2022-1295 - OSV