Vulnerabilities/

Prompty: Arbitrary code execution via JavaScript frontmatter in TypeScript loader

Severity:
High

Description

The TypeScript Prompty loader used gray-matter without overriding executable frontmatter engines. gray-matter supports JavaScript frontmatter blocks such as ---js and evaluates them while parsing. An attacker-controlled .prompty file could therefore execute arbitrary JavaScript during prompt loading.

Recommendation

Update the @prompty/core package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
@prompty/core
Anything's wrong? Let us know Last updated on July 17, 2026