Skip to main content
Loading…
    CVE-2025-64718 — js-yaml is a JavaScript YAML parser and dumper. In js-yaml before 4.1.1 and 3.14.2, it's possible for an attacker to modify the prototype of the result of a parsed yaml document via prototype poll — CVE Database · The Intelligence Room