Vulnerabilities/

js-toml Prototype Pollution Vulnerability

Severity:
High

Description

A prototype pollution vulnerability in js-toml allows a remote attacker to add or modify properties of the global Object.prototype by parsing a maliciously crafted TOML input.

Recommendation

Update the js-toml package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
js-toml
Anything's wrong? Let us know Last updated on August 05, 2025

This issue is available in SmartScanner Professional

See Pricing