CVE-2025-57820 | sveltejs devalue up to 5.3.1 devalue.parse prototype pollution (GHSA-vj54-72f3-p5jv)
A vulnerability identified as critical has been detected in sveltejs devalue up to 5.3.1. Affected by this vulnerability is the function devalue.parse. Performing manipulation results in improperly controlled modification of object prototype attributes ('prototype pollution').
This vulnerability is cataloged as CVE-2025-57820. It is possible to initiate the attack remotely. There is no exploit available.
You should upgrade the affected component.