CVE-2026-3449 | tootallnate once up to 3.0.0 await/then incorrect control flow scoping (SNYK-JS-TOOTALLNATEONCE-15250612 / Nessus ID 300775)
A vulnerability was found in tootallnate once up to 3.0.0. It has been rated as problematic. Affected is the function await/then. This manipulation causes incorrect control flow scoping.
This vulnerability appears as CVE-2026-3449. The attack requires local access. There is no available exploit.
Upgrading the affected component is advised.