HIGH7.5PyPInpmcrates.ioNuGet
GHSA-wxhm-2mq7-7697· CVE-2026-53598, PYSEC-2026-3538Prompty: Arbitrary file read via file reference expansion
Modified: 7/31/2026
package
pkg:npm/%40prompty/core
Prompty: Arbitrary file read via file reference expansion
Modified: 7/31/2026
Prompty: Arbitrary code execution via JavaScript frontmatter in TypeScript loader
Modified: 7/17/2026
Prompty: Server-Side Template Injection to Remote Code Execution in the @prompty/core Nunjucks Renderer
Modified: 8/13/2026