
CVE-2026-24766: NocoDB Prototype Pollution: Crashing the Database Party with One JSON Key A classic Prototype Pollution vulnerability exists in NocoDB's connection testing endpoint. By supplying a crafted JSON payload containing the `__proto__` key, a... https://cvereports.com/reports/CVE-2026-24766
Post summary
The report highlights a prototype‑pollution flaw in NocoDB’s connection testing endpoint that can be provoked with a crafted JSON payload containing the `__proto__` key, potentially causing database crashes.

