29May
CVE-2024-21512 | mysql2 up to 3.9.7 Field nestTables prototype pollution (SNYK-JS-MYSQL2-6861580)
A vulnerability was found in mysql2 up to 3.9.7. It has been declared as critical. Affected by this vulnerability is the functionnestTables
of the component Field Handler. The manipulation leads to improperly controlled modification of object prototype attributes ('prototype pollution').
This vulnerability is known as CVE-2024-21512. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.