CVE-2026-32886 | parse-community parse-server up to 8.6.46/9.6.0-alpha.23 prototype pollution (GHSA-4263-jgmp-7pf4)
A vulnerability identified as problematic has been detected in parse-community parse-server up to 8.6.46/9.6.0-alpha.23. This issue affects some unknown processing. This manipulation causes improperly controlled modification of object prototype attributes.
The identification of this vulnerability is CVE-2026-32886. It is possible to initiate the attack remotely. There is no exploit available.
You should upgrade the affected component.