CVE-2026-49252: deepstream is vulnerable to prototype pollution
Prototype pollution in deepstream server v <=10.0.4. Potential privilege escalation from any authenticated user with write permission to any record.
References
Code Behaviors & Features
Detect and mitigate CVE-2026-49252 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →