CVE-2026-48713
Published Jun 15, 2026Versions prior to 2.6.6 are vulnerable to prototype pollution via crafted missing-key strings when used to persist missing translation keys (e.g. via i18next-http-middleware's mis…
- evidence mentions
- 2
- Buzz score
- 16.0