CVE-2023-26136 | tough-cookie up to 4.1.2 Cookies prototype pollution (Issue 282 / EUVD-2023-1983)
A vulnerability has been found in tough-cookie up to 4.1.2 and classified as critical. This vulnerability affects unknown code of the component Cookies Handler. Performing manipulation results in improperly controlled modification of object prototype attributes ('prototype pollution').
This vulnerability is identified as CVE-2023-26136. The attack can be initiated remotely. There is not any exploit available.
The affected component should be upgraded.