Vendor
A prototype pollution vulnerability in the Ractive.js 'Ractive#set' function allows remote attackers to modify object prototype attributes, potentially leading to further exploitation.