npm package
parse-ini
pkg:npm/parse-ini
Vulnerabilities (1)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2025-63703 | Cri | 9.8 | — | — | May 7, 2026 | npm package parse-ini v1.0.6 is vulnerable to Prototype Pollution in index.js(). |
npm package parse-ini v1.0.6 is vulnerable to Prototype Pollution in index.js().