{"id":"CVE-2020-7706","aliases":["GHSA-8vv3-jxm8-f4vf","SNYK-JS-CONNIELANG-598853"],"url":"https://o3.security/vulnerability/CVE-2020-7706","summary":"Prototype Pollution in connie-lang","details":"The package connie-lang before 0.1.1 are vulnerable to Prototype Pollution in the configuration language library used by connie.","published":"2020-08-18T10:15:13.343Z","modified":"2026-07-09T14:43:53.770579Z","cvss":{"score":9.8,"severity":"CRITICAL","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"},"epss":null,"cisaKev":null,"exploitsKnown":null,"affectedPackages":[{"ecosystem":"npm","name":"connie-lang","fixedVersion":"0.1.1"}],"fix":{"url":"https://github.com/mattinsler/connie-lang/commit/ef376d404c712dd28309ba07f28a8f87f24a015a","label":"mattinsler/connie-lang@ef376d4"},"references":[{"type":"FIX","url":"https://github.com/mattinsler/connie-lang/commit/ef376d404c712dd28309ba07f28a8f87f24a015a"},{"type":"EVIDENCE","url":"https://snyk.io/vuln/SNYK-JS-CONNIELANG-598853"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-07-09T14:43:53.770579Z"}}