Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2020-7637
class-transformer before 0.3.1 allow attackers to perform Prototype Pollution. The classToPlainFromExist function could be tricked into adding or modifying properties of Object.prototype using a __proto__ payload.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.003
EPSS Ranking
54.2%
CVSS Severity
CVSS v3 Score
5.3
CVSS v2 Score
5.0
References
https://github.com/typestack/class-transformer/commit/8f04eb9db02de708f1a20f6f2d2bb309b2fed01e
https://snyk.io/vuln/SNYK-JS-CLASSTRANSFORMER-564431
https://github.com/typestack/class-transformer/commit/8f04eb9db02de708f1a20f6f2d2bb309b2fed01e
https://snyk.io/vuln/SNYK-JS-CLASSTRANSFORMER-564431
Products affected by CVE-2020-7637
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.0
cpe:2.3:a:class-transformer_project:class-transformer:0.1.0
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.1
cpe:2.3:a:class-transformer_project:class-transformer:0.1.1
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.10
cpe:2.3:a:class-transformer_project:class-transformer:0.1.10
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.2
cpe:2.3:a:class-transformer_project:class-transformer:0.1.2
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.3
cpe:2.3:a:class-transformer_project:class-transformer:0.1.3
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.4
cpe:2.3:a:class-transformer_project:class-transformer:0.1.4
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.5
cpe:2.3:a:class-transformer_project:class-transformer:0.1.5
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.6
cpe:2.3:a:class-transformer_project:class-transformer:0.1.6
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.7
cpe:2.3:a:class-transformer_project:class-transformer:0.1.7
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.8
cpe:2.3:a:class-transformer_project:class-transformer:0.1.8
Class-Transformer Project
»
Class-Transformer
»
Version:
0.1.9
cpe:2.3:a:class-transformer_project:class-transformer:0.1.9
Class-Transformer Project
»
Class-Transformer
»
Version:
0.2.0
cpe:2.3:a:class-transformer_project:class-transformer:0.2.0
Class-Transformer Project
»
Class-Transformer
»
Version:
0.2.1
cpe:2.3:a:class-transformer_project:class-transformer:0.2.1
Class-Transformer Project
»
Class-Transformer
»
Version:
0.2.2
cpe:2.3:a:class-transformer_project:class-transformer:0.2.2
Class-Transformer Project
»
Class-Transformer
»
Version:
0.2.3
cpe:2.3:a:class-transformer_project:class-transformer:0.2.3
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved