CVE-2025-8101
Published
CVSS v3
N/A
CVSS v2
N/A
Affected
2
PROJECTS
Description
Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability in Linkify (linkifyjs) allows XSS Targeting HTML Attributes and Manipulating User-Controlled Variables.This issue affects Linkify: from 4.3.1 before 4.3.2.
Find URLs, email addresses, #hashtags and @mentions in plain-text strings, then convert them into HTML <a> links.
JavaScript plugin for finding links in plain-text and converting them to HTML <a> tags.