Vulnerabilities/

mpregular vulnerable to prototype pollution

Severity:
High

Description

mpregular is a package that provides a small program development framework based on RegularJS. A Prototype Pollution vulnerability in the mp.addEventHandler function of mpregular version 0.2.0 and before allows attackers to inject properties on Object.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
mpregular
Anything's wrong? Let us know Last updated on September 25, 2025

This issue is available in SmartScanner Professional

See Pricing