TopVuln

High-risk vulnerability digests

CVE-2024-38999

  • CRITICAL

OESA-2026-1600 nodejs-requirejs security update

Details

CVSS v3
10.0
NVD published
2024-07-01 13:15:05
EPSS
0.3% probability · 51.4th percentile — 2026-03-14
Affected versions
Not available in our cache.
Summary
jrburke requirejs v2.3.6 was discovered to contain a prototype pollution via the function s.contexts._.configure. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.
Remediation
Not available in our cache.
Exploit info
Not available in our cache.

View on NVD

TopVuln sends digest emails with high-risk CVE picks across multiple authoritative sources—curated with EPSS and AI. Choose daily per-stream emails and optional weekly or monthly roundups.

Subscribe — free email digest or paid plan

Information is aggregated from multiple authoritative sources for convenience; verify with NVD and vendors before operational decisions.