{ "id": "CVE-2023-46308", "sourceIdentifier": "cve@mitre.org", "published": "2024-01-03T05:15:11.360", "lastModified": "2024-01-03T05:15:11.360", "vulnStatus": "Received", "descriptions": [ { "lang": "en", "value": "In Plotly plotly.js before 2.25.2, plot API calls have a risk of __proto__ being polluted in expandObjectPaths or nestedProperty." } ], "metrics": {}, "references": [ { "url": "https://github.com/plotly/plotly.js/releases/tag/v2.25.2", "source": "cve@mitre.org" }, { "url": "https://plotly.com/javascript/", "source": "cve@mitre.org" } ] }