Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 24 Aug 2026 03:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in jQWidgets up to 24.0.1. This affects the function JQXLite.extend/jqxBaseFramework.extend of the file jqwidgets/jqx-all.js. This manipulation causes improperly controlled modification of object prototype attributes. The attack can be initiated remotely. The reported GitHub issue was closed with the label "not planned". | |
| Title | jQWidgets jqx-all.js jqxBaseFramework.extend prototype pollution | |
| First Time appeared |
Jqwidgets
Jqwidgets jqwidgets |
|
| Weaknesses | CWE-1321 CWE-94 |
|
| CPEs | cpe:2.3:a:jqwidgets:jqwidgets:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Jqwidgets
Jqwidgets jqwidgets |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-08-24T02:45:08.783Z
Reserved: 2026-08-23T15:59:00.456Z
Link: CVE-2026-78178
No data.
Status : Received
Published: 2026-08-24T03:16:40.650
Modified: 2026-08-24T03:16:40.650
Link: CVE-2026-78178
No data.
OpenCVE Enrichment
No data.