Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
EN
中
Loading…
npm/i18next-http-middleware — 4 CVEs · VulnScope
pkg:npm/
i18next-http-middleware
4 total CVEs
CRITICAL
1
HIGH
3
✅ Check your installed version
Check
All known vulnerabilities
CRITICAL
9.1
CVE-2026-48714
i18next-http-middleware: MissingKeyHandler does not reject keys whose segments contain prototype-polluting names
from 0, < 3.9.7
HIGH
8.6
CVE-2026-41683
i18next-http-middleware: HTTP response splitting and DoS via unsanitised Content-Language header
from 0, < 3.9.3
HIGH
8.6
CVE-2026-41690
i18next-http-middleware: Prototype pollution and path traversal via user-controlled language and namespace parameters
from 0, < 3.9.3
HIGH
8.2
i18next-http-middleware has path traversal / SSRF via user-controlled language and namespace parameters
from 0, < 3.9.3
CVE-2026-42353