CVE-2024-38999General

LOWCVSS 10.0 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

jrburke requirejs v2.3.6 was discovered to contain a prototype pollution via the function s.contexts._.configure. This vulnerability allows attackers to execute arbitrary code or cause a Denial of Service (DoS) via injecting arbitrary properties.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-1321

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 1 mentions across 1 observed day

What's happening

  • General: 1 classified signal
  • 1 total mentions across 1 day

Deep dive

Activity timeline1 mentions / 1d
00111Mentions · 2026-02-12: 102-12
Signal classification1 categories
General
1100.0%
Full discourse1 post
  • Ganesh Bagaria@Ganofins
    General

    @rawp0tat0 @CVEFinder_io Thanks for pointing out I see it should have listed CVEs for requirejs I see some of the cves CVE-2024-38999 doesn't have mapping in nvd that's why it couldn't detect it.

    Post summary

    The user notes that CVE-2024-38999 lacks an NVD mapping, causing a detection tool to miss it; no additional technical or exploit details are provided.

    1000087
    1.0K followersView on X

Explore more