CVE-2026-78181 | ractivejs ractive up to 1.4.4 Keypath Ractive#set prototype pollution (Issue 3448)
A vulnerability, which was classified as critical, was found in ractivejs ractive up to 1.4.4. Impacted is the function Ractive#set of the component Keypath Handler. Executing a manipulation can lead to improperly controlled modification of object prototype attributes.
The identification of this vulnerability is CVE-2026-78181. The attack may be launched remotely. Furthermore, there is an exploit available.
The project was informed of the problem early through an issue report but has not responded yet.VulDB Recent EntriesRead More