VYPR

i18next-fs-backend

by I18next Fs Backend

CVEs (1)

  • CVE-2026-48713CriJun 15, 2026
    risk 0.52cvss 9.1epss

    Versions prior to 2.6.6 are vulnerable to prototype pollution via crafted missing-key strings when used to persist missing translation keys (e.g. via i18next-http-middleware's missingKeyHandler exposed to untrusted input). Backend.writeFile() splits each queued missing-key…