Web Application Security · 2024-10-08 · Karthik R.
Prototype Pollution in 2025: From Toy to Tenant-Takeover
Prototype pollution was a curiosity for years. It is now a reliable RCE primitive in Node and a reliable XSS gadget in browsers. The bug, the gadgets, the fix.
The full article renders with JavaScript enabled. The summary above is provided for accessibility and indexing.