← Back to CVE List

CVE-2020-28439

Published: 2020-12-11T17:15Z
Last Modified: 2024-11-21T05:22Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
This affects all versions of package corenlp-js-prefab. The injection point is located in line 10 in 'index.js.' It depends on a vulnerable package 'corenlp-js-interface.' Vulnerability can be exploited with the following PoC: > MITRE Terms of Use apply – see LICENSE‑MITRE.txt