CVE-2020-7751: Prototype Pollution
Published Oct 25, 2020
·Updated
pathval before version 1.1.1 is vulnerable to prototype pollution.
Affected Software
4 affected componentsFixes available
Chaijis Pathval Node.js<1.1.1
IBM Business Automation Insights<=25.0.0
IBM Business Automation Insights<=24.0.1
IBM Business Automation Insights<=24.0.0
Remediation
Patch Available
Patch Available
Event History
Oct 25, 2020
CVE Published
via MITRE·03:55 PM
Data Sourced
via MITRE·03:55 PM
DescriptionSeverityWeakness
Nov 3, 2025
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is CVE-2020-7751?
CVE-2020-7751 is a vulnerability in pathval before version 1.1.1 which allows for prototype pollution.
2
What is the severity of CVE-2020-7751?
The severity of CVE-2020-7751 is high with a severity value of 7.2.
3
Which software versions are affected by CVE-2020-7751?
Versions of pathval up to but not including 1.1.1 are affected by CVE-2020-7751.
4
How can I fix CVE-2020-7751?
To fix CVE-2020-7751, you should update pathval to version 1.1.1 or later.
5
Where can I find more information about CVE-2020-7751?
You can find more information about CVE-2020-7751 on the GitHub pull request page (https://github.com/chaijs/pathval/pull/58/files) and the Snyk vulnerability page (https://snyk.io/vuln/SNYK-JS-PATHVAL-596926).