Prototype Pollution in apidoc-core Library Affecting Software Developers
CVE-2025-57317
7.5HIGH
What is CVE-2025-57317?
The apidoc-core library, essential for generating apidoc results compliant with the apidoc-spec, is vulnerable to a Prototype Pollution exploit. This issue lies within the preProcess function, allowing attackers to inject properties into Object.prototype by sending carefully crafted payloads. The repercussions can include denial of service, as the integrity of the application can be compromised, leading to unexpected behaviors or crashes.
