CVE-2026-61834: scim-patch: Mutation of Inherited Built-in Method Objects
Incomplete Prototype Pollution Fix Allows Mutation of Inherited Built-in Method Objects
scim-patch blocks direct dangerous path segments such as __proto__, constructor, and prototype, but still traverses inherited properties when applying SCIM patch paths.
An attacker who controls a SCIM PATCH operation can use paths such as toString.polluted to mutate shared built-in function objects, for example Object.prototype.toString.
References
- github.com/advisories/GHSA-2mhw-wcx5-v3xj
- github.com/thomaspoignant/scim-patch/commit/c86474f7a9b16191d939f59ba94eca6c6e63044b
- github.com/thomaspoignant/scim-patch/pull/1127
- github.com/thomaspoignant/scim-patch/releases/tag/v0.9.2
- github.com/thomaspoignant/scim-patch/security/advisories/GHSA-2mhw-wcx5-v3xj
- nvd.nist.gov/vuln/detail/CVE-2026-61834
Code Behaviors & Features
Detect and mitigate CVE-2026-61834 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →