CVE-2026-104848 | tinylibs Tinypool up to 2.1.0 Worker Options dist/index.js prototype pollution

SecurityVulns

A vulnerability has been found in tinylibs Tinypool up to 2.1.0 and classified as critical. This vulnerability affects unknown code of the file dist/index.js of the component Worker Options. This manipulation causes improperly controlled modification of object prototype attributes.

This vulnerability is registered as CVE-2026-104848. Remote exploitation of the attack is possible. No exploit is available.

The affected component should be upgraded.VulDB Recent EntriesRead More