Critical
Low
Medium
CVE-2025-57353
Overview
The Runtime components of messageformat package for Node.js prior to version 3.0.1 contain a prototype pollution vulnerability. Due to insufficient validation of nested message keys during the processing of message data, an attacker can manipulate the prototype chain of JavaScript objects by providi...
Critical
Low
Medium
No items found.