CVE-2026-23736 - seroval Affected by Prototype Pollution via JSON Deserialization

CVE-2026-23736 - seroval Affected by Prototype Pollution via JSON Deserialization

CVE ID : CVE-2026-23736 Published : Jan. 21, 2026, 11:15 p.m. | 22 minutes ago Description : seroval facilitates JS value stringification, including complex structures beyond JSON.stringify capabilities. In versions 1.4.0 and below, due to improper input validation, a malicious object key can lead to prototype pollution during JSON deserialization. This vulnerability affects only JSON deserialization functionality. This issue is fixed in version 1.4.1. Severity: 7.3 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
Jan. 21, 2026