A vulnerability was found in intlify vue-i18n up to 9.14.2/10.0.5/11.1.1. It has been declared as critical. This vulnerability affects the function
handleFlatJson
. The manipulation leads to improperly controlled modification of object prototype attributes (‘prototype pollution’).
This vulnerability was named CVE-2025-27597. The attack can be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.