Loading
The package grpc before 1.24.4; the package @grpc/grpc-js before 1.1.8 are vulnerable to Prototype Pollution via loadPackageDefinition.
Cite this page
CVE-2020-7768. CVEDatabase.com. Retrieved 1 May 2026. https://cvedatabase.com/cve/CVE-2020-7768
Use CWE-1321, Grpc vendor hub and Grpc product page to widen CVE-2020-7768 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2023-44487, CVE-2017-9431 and CVE-2017-8359 for nearby disclosures in the same product family.