dt_for_itables is vulnerable to Prototype Pollution
61
Medium Risk
Affected versions of this package are vulnerable to prototype pollution due to the indirect evaluation of JavascriptCode and JavascriptFunction. It could enable modifications to object prototypes, which, depending on how the application handles the polluted objects, may lead to issues such as denial of service, privilege escalation, or remote code execution. An attacker can exploit a vulnerability by manipulating input to bypass the checks of the indirect evaluation of JavaScript code. By crafting malicious input that evades this check, the attacker can inject arbitrary properties into the prototype chain, resulting in what is known as prototype pollution.
You are affected if you are using a version that falls within the vulnerable range.
dt_for_itables is vulnerable to Prototype Pollution in versions 2.0.10 - 2.3.0.
Upgrade the dt_for_itables library to a patch version.
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

SOC 2Compliant
ISO 27001Compliant