CVE-2026-25881 | nyariv SandboxJS up to 0.8.30 prototype pollution (GHSA-ww7g-4gwx-m7wj)
A vulnerability marked as problematic has been reported in nyariv SandboxJS up to 0.8.30. The impacted element is an unknown function. This manipulation causes improperly controlled modification of object prototype attributes.
This vulnerability is registered as CVE-2026-25881. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.