Skip to content

please upgrade swiper - critical security issue #10

@Inscure

Description

@Inscure

Security Alert: Critical Prototype Pollution (CVE-2026-27212)

Description: The project uses Swiper (v6.5.1–12.1.1), which is vulnerable to Prototype Pollution ([GHSA-hmx5-qpq5-p643](GHSA-hmx5-qpq5-p643)). This allows attackers to inject malicious properties into the global Object.prototype, potentially leading to DoS or Remote Code Execution (RCE).

  • Severity: 9.4 (Critical)
  • Fix: Upgrade swiper to version 12.1.2 or higher.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions