What is CVE-2026-71318?
A vulnerability in the Nuxt.js framework allows dynamic component resolution manipulation via the `as` prop on the /__nuxt_island/ endpoint. This affects versions from 3.1.0 through 3.21.10 and 4.5.1. Updating to version 3.21.1 is recommended.
Azərbaycanca: Nuxt.js framework-ündə /__nuxt_island/ endpoint-i vasitəsilə `as` prop-unun manipulyasiyası ilə dinamik komponent həlli zəifliyi aşkarlanıb. Bu, 3.1.0-dan 3.21.10 və 4.5.1 versiyalarına təsir edir. Administrasiyalara 3.21.1 versiyasına yeniləmə tövsiyə olunur.
FAQ2
Which versions of Nuxt.js are affected by CVE-2026-71318?
This vulnerability affects Nuxt.js versions from 3.1.0 through 3.21.10, as well as version 4.5.1.
Which version is recommended to mitigate CVE-2026-71318?
Updating to version 3.21.1 is recommended.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.