CNNVD-202512-2313 Information

CNNVD ID

CNNVD-202512-2313

CVE-2025-8083

  • CNNVD Published: 2025-12-12

Description (Chinese)

vuetify是德国vuetify开源的一个 Vue 的材质组件框架。 vuetify 2.2.0-beta.2版本至3.0.0-alpha.10之前版本存在安全漏洞,该漏洞源于Preset配置存在原型污染,可能导致污染所有JavaScript对象。

Description (English)

vuetefy is a material assembly framework for Vue, an open source for vuetefy in Germany. There was a safety loophole before the vuetify 2.2.o-beta.2 version to 3.0.0-alpha.10, which resulted from the prototype contamination of Preset configuration, which could lead to contamination of all JavaScript objects.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

vuetify

Published

2025-12-12

Last Modified

2026-02-24

References

https://codepen.io/herodevs/pen/RNWoaQM/f1f4ccc7e6a307c2a8c36d948ba14755 https://www.herodevs.com/vulnerability-directory/cve-2025-8083

Patch

https://vuetifyjs.com/getting-started/upgrade-guide/

Share on: