CVE-2025-48054 | radashi up to 12.5.0 set path prototype pollution (GHSA-2xv9-ghh9-xc69)
A vulnerability was found in radashi up to 12.5.0. It has been classified as critical. This affects the function Set. The manipulation of the argument path leads to improperly controlled modification of object prototype attributes ('prototype pollution').
This vulnerability is uniquely identified as CVE-2025-48054. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.