CVE-2026-63386

CVE-2026-63386 published: js-toml is a TOML parser for JavaScript. Prior to 1.1.3, load() does not bound nesting or dotted-key depth in the recursive parser at src/load/parser.ts or the interpreter at src/load/interpreter.ts, so deeply nested arrays, deeply nested inline tables, or ...

View full NVD advisory → ← Back to CVE watch