COMMON WEAKNESS ENUMERATIONIncomplete
CWE-1321
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
Abstraction
Variant
Structure
Simple
Likelihood of Exploit
High
Understand the problem
What is the problem?
Root cause
How and when does the problem arise?
Lifecycle phase
Architecture and Design
Lifecycle phase
Implementation
Risk
What does successful exploitation lead to?
Read Application DataModify Application Data
DoS: Crash, Exit, or Restart
Defence
How is it prevented and fixed?
Implementation
Implementation-phase defence
Detail
Implementation
Implementation-phase defence
Architecture and Design
Architecture and design approach
Detail
Architecture and Design
Architecture and design approach
Implementation
Input Validation
Detail
Implementation
Input Validation
Implementation
Implementation-phase defence
Detail
Implementation
Implementation-phase defence
Implementation
Implementation-phase defence
Detail
Implementation
Implementation-phase defence
Verification
How is it detected?
Automated Static Analysis
HighMITRE diagram
Weakness relationships and flow
