pkg:npm/@intlify/core-base

3 total CVEs

✅ Check your installed version

All known vulnerabilities

  • CVE-2025-53892vue-i18n's escapeParameterHtml does not prevent DOM-based XSS through its tag attributes
    >= 9.0.0, < 9.14.5
  • CVE-2025-27597Vue I18n Allows Prototype Pollution in `handleFlatJson`
    >= 9.1.0, < 9.1.11
  • CVE-2024-52809vue-i18n has cross-site scripting vulnerability with prototype pollution
    >= 9.3.0, < 9.14.2