Vulnerability Database

289,599

Total vulnerabilities in the database

CVE-2020-8203

Prototype pollution attack when using _.zipObjectDeep in lodash before 4.17.20.

CVSS v3:

  • Severity: High
  • Score: 7.4
  • AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:H

CVSS v2:

  • Severity: Medium
  • Score: 5.8
  • AV:N/AC:M/Au:N/C:N/I:P/A:P
Software From Fixed in
lodash / lodash - 4.17.20
oracle / peoplesoft_enterprise_peopletools 8.58 8.58.x
oracle / communications_billing_and_revenue_management 12.0.0.3.0 12.0.0.3.0.x
oracle / communications_billing_and_revenue_management 7.5.0.23.0 7.5.0.23.0.x
oracle / enterprise_communications_broker 3.2.0 3.2.0.x
oracle / banking_extensibility_workbench 14.3.0 14.3.0.x
oracle / banking_virtual_account_management 14.3.0 14.3.0.x
oracle / banking_trade_finance_process_management 14.3.0 14.3.0.x
oracle / banking_credit_facilities_process_management 14.3.0 14.3.0.x
oracle / banking_corporate_lending_process_management 14.3.0 14.3.0.x
oracle / peoplesoft_enterprise_peopletools 8.59 8.59.x
oracle / primavera_gateway 17.12.0 17.12.11.x
oracle / enterprise_communications_broker pcz3.3 pcz3.3.x
oracle / communications_subscriber-aware_load_balancer cz8.3 cz8.3.x
oracle / communications_subscriber-aware_load_balancer cz8.4 cz8.4.x
oracle / communications_session_router cz8.4 cz8.4.x
oracle / communications_session_border_controller cz8.4 cz8.4.x
oracle / communications_session_border_controller 8.4 8.4.x
oracle / communications_session_border_controller 9.0 9.0.x
oracle / primavera_gateway 20.12.0 20.12.7.x
oracle / primavera_gateway 19.12.0 19.12.11.x
oracle / primavera_gateway 18.8.0 18.8.12.x
oracle / banking_virtual_account_management 14.2.0 14.2.0.x
oracle / banking_virtual_account_management 14.5.0 14.5.0.x
oracle / banking_supply_chain_finance 14.2.0 14.2.0.x
oracle / banking_trade_finance_process_management 14.5.0 14.5.0.x
oracle / banking_credit_facilities_process_management 14.2.0 14.2.0.x
oracle / banking_credit_facilities_process_management 14.5.0 14.5.0.x
oracle / banking_corporate_lending_process_management 14.2.0 14.2.0.x
oracle / banking_corporate_lending_process_management 14.5.0 14.5.0.x
oracle / banking_supply_chain_finance 14.5.0 14.5.0.x
oracle / banking_supply_chain_finance 14.3.0 14.3.0.x
oracle / banking_trade_finance_process_management 14.2.0 14.2.0.x
oracle / banking_extensibility_workbench 14.2.0 14.2.0.x
oracle / banking_extensibility_workbench 14.5.0 14.5.0.x
oracle / enterprise_communications_broker 3.3.0 3.3.0.x
oracle / communications_cloud_native_core_policy 1.11.0 1.11.0.x
oracle / banking_liquidity_management 14.2.0 14.2.0.x
oracle / banking_liquidity_management 14.5.0 14.5.0.x
oracle / banking_liquidity_management 14.3.0 14.3.0.x
oracle / jd_edwards_enterpriseone_tools - 9.2.6.0.x
oracle / blockchain_platform - 21.1.2
lodash - 4.17.20
lodash / lodash-es - 4.17.20