The Set Value Project maintains a narrowly focused software product, set_value, that addresses a specialized use case within a defined scope of deployment. Treat this as a compact vendor profile; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Set Value Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2021-23440CRITICAL This affects the package set-value before <2.0.1, >=3.0.0 <4.0.1. A type confusion vulnerability can lead to a bypass of CVE-2019-10747 when the user-provided keys used in the path | Sep 12, 2021 | 9.8 | 32 | NO | NO |
CVE-2019-10747CRITICAL set-value is vulnerable to Prototype Pollution in versions lower than 3.0.1. The function mixin-deep could be tricked into adding or modifying properties of Object.prototype using | Aug 23, 2019 | 9.8 | 32 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Set Value Project.
Media articles that mention a CVE ID that affects a product developed by Set Value Project — matched by CVE ID, not by vendor name.