A Prototype Pollution issue in Aliconnect /sdk v.0.0.6...
Critical severity
Unreviewed
Published
Mar 28, 2025
to the GitHub Advisory Database
•
Updated Apr 1, 2025
Description
Published by the National Vulnerability Database
Mar 28, 2025
Published to the GitHub Advisory Database
Mar 28, 2025
Last updated
Apr 1, 2025
A Prototype Pollution issue in Aliconnect /sdk v.0.0.6 allows an attacker to execute arbitrary code via the aim function in the aim.js component.
References