Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-2797 | All versions of the package node-gettext are vulnerable to Prototype Pollution via the addTranslations() function in gettext.js due to improper user input sanitization. |
Github GHSA |
GHSA-g974-hxvm-x689 | node-gettext vulnerable to Prototype Pollution |
Wed, 12 Mar 2025 06:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift_data_foundation:4.18::el9 |
Wed, 26 Feb 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:/a:redhat:openshift_data_foundation:4.15::el9 |
Tue, 25 Feb 2025 14:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Redhat
Redhat openshift Data Foundation |
|
| CPEs | cpe:/a:redhat:openshift_data_foundation:4.16::el9 cpe:/a:redhat:openshift_data_foundation:4.17::el9 |
|
| Vendors & Products |
Redhat
Redhat openshift Data Foundation |
Tue, 10 Sep 2024 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 10 Sep 2024 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | node-gettext: Prototype Pollution | |
| References |
| |
| Metrics |
threat_severity
|
threat_severity
|
Tue, 10 Sep 2024 05:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | All versions of the package node-gettext are vulnerable to Prototype Pollution via the addTranslations() function in gettext.js due to improper user input sanitization. | |
| Weaknesses | CWE-1321 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2024-11-12T19:59:36.285Z
Reserved: 2023-12-22T12:33:20.122Z
Link: CVE-2024-21528
Updated: 2024-09-10T13:40:08.863Z
Status : Deferred
Published: 2024-09-10T05:15:10.700
Modified: 2026-04-15T00:35:42.020
Link: CVE-2024-21528
OpenCVE Enrichment
No data.
EUVD
Github GHSA