Falhas do tipo CWE-1321

304 resultados
CVE-2026-2950MEDIUMlodash vulnerable to Prototype Pollution via array path bypass in `_.unset` and `_.omit`EPSS 0.3%CVE-2026-46509HIGHdeepobj: Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')EPSS 0.3%CVE-2026-45302HIGHPrototype Pollution in parse-nested-form-data via `__proto__` in FormData field namesEPSS 0.3%CVE-2026-12209MEDIUMRubyLouvre avalon Template Filter index.js prototype pollutionEPSS 0.3%CVE-2026-12208MEDIUMjsonata-js jsonata Function Binding Frame System jsonata.js createFrame prototype pollutionEPSS 0.3%CVE-2026-41690HIGHPrototype pollution and path traversal in i18next-http-middleware via user-controlled language and namespace parametersEPSS 0.3%CVE-2025-55195HIGH@std/toml Prototype Pollution in Node.js and BrowserEPSS 0.3%CVE-2024-54156MEDIUMIn JetBrains YouTrack before 2024.3.52635 multiple merge functions were vulnerable to prototype pollution attackEPSS 0.3%CVE-2026-27837MEDIUMDottie vulnerable to prototype pollution bypass via non-first path segments in set() and transform()EPSS 0.3%CVE-2025-57320MEDIUMjson-schema-editor-visual is a package that provides jsonschema editor. A Prototype Pollution vulnerability in the setData and deleteData fuEPSS 0.3%CVE-2026-55388HIGHpiscina: Prototype Pollution Gadget → RCE via inherited options.filenameEPSS 0.3%CVE-2026-54312HIGHn8n: Microsoft SQL Node Prototype PollutionEPSS 0.3%CVE-2025-57350HIGHThe csvtojson package, a tool for converting CSV data to JSON with customizable parsing capabilities, contains a prototype pollution vulneraEPSS 0.3%CVE-2025-53626MEDIUMpdfme has Sandbox Escape and Prototype Pollution vulnerabilities in pdfme expression evaluationEPSS 0.3%CVE-2026-42041MEDIUMAxios: Authentication Bypass via Prototype Pollution Gadget in `validateStatus` Merge StrategyEPSS 0.3%CVE-2026-44490MEDIUMAxios: DoS & Header Injection via Prototype Pollution Read-Side Gadgets in axios merge functionsEPSS 0.3%CVE-2026-46510HIGHPrototype pollution in form-data-objectizer via bracket-notation form keysEPSS 0.3%CVE-2025-8083HIGHVuetify Prototype Pollution via Preset optionsEPSS 0.3%CVE-2025-31475MEDIUMtarteaucitron.js allows prototype pollution via custom text injectionEPSS 0.3%CVE-2024-14020LOWcarboneio carbone Formatter input.js prototype pollutionEPSS 0.3%