CVE-2026-44293: Code Injection in protobuf.js toObject via bytes field defaults
Security AdvisoryCVE-2026-44293Highprotobufjs
Affected:
- protobuf.js <7.5.5
- protobuf.js >=8.0.0 <=8.0.1
Fixed in:
- 7.5.6
- 8.0.2
Referenced CVEs: CVE-2026-44293 · 7.7
文章内图片已隐藏以节省流量 · Upgrade to Pro to view images & offline archive
This content was auto-fetched from github.com, cleaned by our LLM pipeline, and translated to English. View original.