CVE-2026-107701 - dot-access through 1.0.0 Prototype Pollution via set() path argument
CVE ID :CVE-2026-107701 Published : Oct. 8, 2026, 6:36 p.m. | 52 minutes ago Description :dot-access through 1.0.0 contains a prototype pollution vulnerability that allows attackers to modify Object.prototype by supplying a crafted dotted path to set(). Attackers controlling the path, such as...