CVE-2024-57083 | redoc up to 2.2.0 redoc.lib.js Module.mergeObjects prototype pollution (Issue 2499 / EUVD-2024-54329)
A vulnerability was found in redoc up to 2.2.0. It has been rated as problematic. Affected by this issue is the function Module.mergeObjects in the library redoc/bundles/redoc.lib.js. The manipulation leads to improperly controlled modification of object prototype attributes ('prototype pollution').
This vulnerability is handled as CVE-2024-57083. The attack needs to be done within the local network. There is no exploit available.