Skip to content
Noroxi

prototypejs records

4 published records for vendor prototypejs.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
75%
Median publish → KEV
No record has entered KEV

Records by year

  1. 20
  2. 21

Bar: total · dark part: CISA KEV.

Recurring classes

The weakness classes this vendor ships most often: where to look.

CWE

All records

4 records
  • CVE-2008-7220
    34Monitor

    Unspecified vulnerability in Prototype JavaScript framework (prototypejs) before 1.6.0.2 allows attackers to make "cross-site ajax requests"

    HighCVSS 7.5Proof of conceptEPSS 13%

    prototypejs · prototypeSep 13, 2009

  • An issue was discovered in the stripTags and unescapeHTML components in Prototype 1.7.3 where an attacker can cause a Regular Expression Den

    HighCVSS 7.5No exploitEPSS 3%

    prototypejs · prototypeJun 21, 2021

  • CVE-2007-2383
    21Monitor

    The Prototype (prototypejs) framework before 1.5.1 RC3 exchanges data using JavaScript Object Notation (JSON) without an associated protecti

    MediumCVSS 5.0No exploitEPSS 2%

    prototypejs · prototype frameworkApr 30, 2007

  • CVE-2020-7993
    17Monitor

    Prototype 1.6.0.1 allows remote authenticated users to forge ticket creation (on behalf of other user accounts) via a modified email ID fiel

    MediumCVSS 4.3No exploitEPSS 1%

    prototypejs · prototypeFeb 3, 2020