Beveiligingsadvies

CVE-2026-78180

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-08-24 03:15:08
Laatst bijgewerkt 2026-08-24 17:12:36
Toegewezen door VulDB
CVSS-score 7.5
Status PUBLISHED

Beschrijving

A security flaw has been discovered in alibaba-fusion next up to 1.27.34. This issue affects the function ConfigProvider.getContextProps of the file components/dialog/index.tsx of the component deepMerge. Performing a manipulation of the argument locale results in improperly controlled modification of object prototype attributes. The attack may be initiated remotely. The reported GitHub issue was closed automatically due to inactivity.