Vulnerability Description
This affects all versions of package posix. When invoking the toString method, it will fallback to 0x0 value, as the value of toString is not invokable (not a function), and then it will crash with type-check.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Posix Project | Posix | All versions |
Related Weaknesses (CWE)
References
- https://snyk.io/vuln/SNYK-JS-POSIX-2400719ExploitThird Party Advisory
- https://snyk.io/vuln/SNYK-JS-POSIX-2400719ExploitThird Party Advisory
FAQ
What is CVE-2022-21211?
CVE-2022-21211 is a vulnerability with a CVSS score of 5.9 (MEDIUM). This affects all versions of package posix. When invoking the toString method, it will fallback to 0x0 value, as the value of toString is not invokable (not a function), and then it will crash with ty...
How severe is CVE-2022-21211?
CVE-2022-21211 has been rated MEDIUM with a CVSS base score of 5.9/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-21211?
Check the references section above for vendor advisories and patch information. Affected products include: Posix Project Posix.