Sunnyadn's vulnerability footprint centers on js-toml, a JavaScript TOML parser library, with disclosures clustering around prototype-pollution issues that reflect the risks inherent to dynamic object manipulation in JavaScript environments. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Sunnyadn over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-49293HIGH js-toml is a TOML parser for JavaScript, fully compliant with the TOML 1.0.0 Spec. Versions up to and including 1.1.0 parse hexadecimal / octal / binary integer literals via a hand | Jun 19, 2026 | 7.5 | 33 | NO | NO |
CVE-2025-54803HIGH js-toml is a TOML parser for JavaScript, fully compliant with the TOML 1.0.0 Spec. In versions below 1.0.2, a prototype pollution vulnerability in js-toml allows a remote attacker | Aug 5, 2025 | 7.5 | 25 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Sunnyadn.
Media articles that mention a CVE ID that affects a product developed by Sunnyadn — matched by CVE ID, not by vendor name.