High severity7.7NVD Advisory· Published May 1, 2022· Updated Jun 17, 2026
CVE-2022-25301
CVE-2022-25301
Description
All versions of package jsgui-lang-essentials are vulnerable to Prototype Pollution due to allowing all Object attributes to be altered, including their magical attributes such as proto, constructor and prototype.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
jsgui-lang-essentialsnpm | <= 0.4.3 | — |
Affected products
2- jsgui-lang-essentials/jsgui-lang-essentialsdescription
Patches
Vulnerability mechanics
References
4- github.com/metabench/jsgui-lang-essentials/issues/1nvdExploitIssue TrackingThird Party AdvisoryWEB
- snyk.io/vuln/SNYK-JS-JSGUILANGESSENTIALS-2316897nvdExploitThird Party AdvisoryWEB
- github.com/advisories/GHSA-p3pg-64pv-v7jgghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2022-25301ghsaADVISORY
News mentions
0No linked articles in our index yet.