CVE-2026-25150 | QwikDev qwik up to 1.18.x formToObj prototype pollution (GHSA-xqg6-98cw-gxhq / EUVD-2026-5165)
A vulnerability classified as critical was found in QwikDev qwik up to 1.18.x. This vulnerability affects the function formToObj. Such manipulation leads to improperly controlled modification of object prototype attributes.
This vulnerability is traded as CVE-2026-25150. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is advised.