angularjs angular-js CVE-2019-10768 is a vulnerability in AngularJS
Published on November 19, 2019

In AngularJS before 1.7.9 the function `merge()` could be tricked into adding or modifying properties of `Object.prototype` using a `__proto__` payload.

NVD


Products Associated with CVE-2019-10768

Want to know whenever a new CVE is published for AngularJS? stack.watch will email you.

 

Exploit Probability

EPSS
0.33%
Percentile
55.43%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.