
PulsePatch.io@pulsepatchio
Disclosure
Critical prototype pollution (CVE-2026-33863) in `Convict` via `load()`, `loadFile()`, schema init. Possible varied impacts. Assess usage for untrusted input. #PrototypePollution #SecurityAdvisory #InfoSec https://www.pulsepatch.io/posts/cve-2026-33863-convict-prototype-pollution
Post summary
The tweet announces the discovery of a critical prototype‑pollution flaw in Convict, outlining affected functions and urging users to review untrusted input handling. No PoC, exploit, or patch details are provided.
0000027
6 followersView on X
