CVE-2025-61140 | jsonpath 1.1.1 lib/index.js value prototype pollution (WID-SEC-2026-0326)
A vulnerability classified as critical was found in jsonpath 1.1.1. Impacted is the function Value in the library lib/index.js. Such manipulation leads to improperly controlled modification of object prototype attributes.
This vulnerability is listed as CVE-2025-61140. The attack may be performed from remote. There is no available exploit.