PatchSiren

swmansion CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM swmansion CVE published 2026-09-25

CVE-2026-97724

A prototype pollution vulnerability exists in Software Mansion React Native Worklets before 0.12.2. An attacker can exploit this by providing a specially crafted object containing a __proto__ property, which can modify the prototype of an object created during serialization. This can lead to a remotely triggered denial of service in applications that pass attacker-controlled data through the affected seri [truncated]