Vulnerability CVE-2021-26505


Published: 2023-08-11

Description:
Prototype pollution vulnerability in MrSwitch hello.js version 1.18.6, allows remote attackers to execute arbitrary code via hello.utils.extend function.

 References:
https://github.com/MrSwitch/hello.js/issues/634

Copyright 2026, cxsecurity.com

 

Back to Top