Node.jsPrototype PollutionRCEJavaScript

From Idle to Pwn: Chaining Prototype Pollution to RCE

How a simple prototype pollution in a Node.js dashboard widget led to full remote code execution.

12 min read
While auditing a dashboard...
Note
This content is dynamically loaded from JSON.