Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-p3pg-64pv-v7jg: Prototype Pollution in jsgui-lang-essentials

All versions of package jsgui-lang-essentials are vulnerable to Prototype Pollution due to allowing all Object attributes to be altered, including their magical attributes such as proto, constructor and prototype.

ghsa
#js#git

Prototype Pollution in jsgui-lang-essentials

High severity GitHub Reviewed Published May 3, 2022 • Updated May 20, 2022

ghsa: Latest News

GHSA-3qhf-m339-9g5v: MCP Python SDK vulnerability in the FastMCP Server causes validation error, leading to DoS