
CVE-2026-74787 Scriban before 7.0.0 contains an uncontrolled recursion vulnerability in the https://object.to_json builtin function that lacks depth limits and circular reference detection.… https://www.cve.org/CVERecord?id=CVE-2026-74787
Post summary
The text announces an uncontrolled recursion vulnerability in Scriban's object.to_json function and provides technical details, but offers no PoC, exploit, active exploitation evidence, or patch information.


