A vulnerability was determined in brikcss merge up to 1.3.0. This affects an unknown part. Executing a manipulation of the argument __proto__/constructor.prototype/prototype can lead to improperly controlled modification of object prototype attributes. The attack may be performed from remote. The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
Affected Vendors & Products
References
History
Mon, 20 Apr 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in brikcss merge up to 1.3.0. This affects an unknown part. Executing a manipulation of the argument __proto__/constructor.prototype/prototype can lead to improperly controlled modification of object prototype attributes. The attack may be performed from remote. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | brikcss merge prototype pollution | |
| Weaknesses | CWE-1321 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-04-20T01:45:12.099Z
Reserved: 2026-04-19T10:42:43.695Z
Link: CVE-2026-6594
No data.
Status : Received
Published: 2026-04-20T02:16:15.633
Modified: 2026-04-20T02:16:15.633
Link: CVE-2026-6594
No data.
OpenCVE Enrichment
Updated: 2026-04-20T03:30:41Z