
🚨Critical - JSONata Prototype Pollution to RCE via lookup() (CVE-2026-77413) JSONata’s expression evaluator lookup() misses an Object.prototype.hasOwnProperty check, letting attacker-supplied expressions resolve inherited prototype members. Crafted JSONata can reach constructor/getters to access process.getBuiltinModule('child_process') and execute OS commands with host process privileges. 👉Affected: jsonata < 1.8.8 and >= 2.0.0 < 2.2.0 | Upgrade to 1.8.8 / 2.2.0
Post summary
A critical prototype‑pollution vulnerability (CVE‑2026‑77413) in JSONata allows RCE; affected versions are listed and the required upgrade is specified.

