CVE Database
/

CVE-2026-25047

Back to search

CVE-2026-25047

Published: Jan 29, 2026

Modified: Feb 2, 2026

PUBLISHED

Description

deepHas provides a test for the existence of a nested object key and optionally returns that key. A prototype pollution vulnerability exists in version 1.0.7 of the deephas npm package that allows an attacker to modify global object behavior. This issue was fixed in version 1.0.8.

VendorProductVersions

sharpred

deepHas

affected
< 1.0.7

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now