CRITICALnpm
GHSA-44fc-8fm5-q62h· CVE-2026-33864Convict has Prototype Pollution via startsWith() function
Modified: 3/26/2026
package
pkg:npm/convict
Convict has Prototype Pollution via startsWith() function
Modified: 3/26/2026
convict vulnerable to Prototype Pollution
Modified: 11/26/2024
Convict has prototype pollution via load(), loadFile(), and schema initialization
Modified: 3/26/2026
Prototype Pollution in convict
Modified: 7/8/2026
Prototype Pollution in convict
Modified: 9/10/2026