CVE-2026-1774
Published
CVSS v3
9.8
CRITICAL
CVSS v2
N/A
Affected
1
PROJECT
Description
CASL Ability, versions 2.4.0 through 6.7.4, contains a prototype pollution vulnerability.
CASL is an isomorphic authorization JavaScript library which restricts what resources a given user is allowed to access