Browse all 9 CVE security advisories affecting i18next. AI-powered Chinese analysis, POCs, and references for each vulnerability.
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2026-48714 | i18next-http-middleware missingKeyHandler does not reject keys whose segments contain prototype-polluting names — i18next-http-middleware CWE-1321 | 9.1 | Critical | 2026-06-15 |
| CVE-2026-42353 | Path traversal / SSRF in i18next-http-middleware via user-controlled language and namespace parameters — i18next-http-middleware CWE-22 | 8.2 | High | 2026-05-08 |
| CVE-2026-41683 | HTTP response splitting and DoS in i18next-http-middleware via unsanitised Content-Language header — i18next-http-middleware CWE-79 | 8.6 | High | 2026-05-08 |
| CVE-2026-41690 | Prototype pollution and path traversal in i18next-http-middleware via user-controlled language and namespace parameters — i18next-http-middleware CWE-22 | 8.6 | High | 2026-05-08 |
This page lists every published CVE security advisory associated with i18next. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.