CVE-2026-30226
ADVISORY - githubSummary
In devalue v5.6.3, devalue.parse and devalue.unflatten were susceptible to prototype pollution via maliciously crafted payloads. Successful exploitation could lead to Denial of Service (DoS) or type confusion.
NIST
CREATED
UPDATED
ADVISORY IDCVE-2026-30226
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)
CVSS SCORE
6.3mediumGitHub
CREATED
UPDATED
ADVISORY IDGHSA-cfw5-2vxh-hr84
EXPLOITABILITY SCORE
-
EXPLOITS FOUND
-
COMMON WEAKNESS ENUMERATION (CWE)