VYPR

@std/toml

by Denoland

Source repositories

CVEs (1)

  • CVE-2025-55195HigAug 14, 2025
    risk 0.40cvss 7.3epss 0.00

    @std/toml is the Deno Standard Library. Prior to version 1.0.9, an attacker can pollute the prototype chain in Node.js runtime and Browser when parsing untrusted TOML data, thus achieving Prototype Pollution (PP) vulnerability. This is because the library is merging an untrusted…