A vulnerability was found in intlify vue-i18n up to 9.14.2/10.0.5/11.1.1. It has been declared as critical. This vulnerability affects the function handleFlatJson. The manipulation leads to improperly controlled modification of object prototype attributes (‘prototype pollution’).

This vulnerability was named CVE-2025-27597. The attack can be initiated remotely. There is no exploit available.

It is recommended to upgrade the affected component.