CVE-2026-97724

medium

Description

A prototype pollution vulnerability in Software Mansion React Native Worklets before 0.12.2 allows an attacker-controlled object containing a __proto__ property to modify the prototype of an object created during serialization in clonePlainJSObject in packages/react-native-worklets/src/memory/serializable.native.ts. When affected data is subsequently processed by React Native Worklets, the malformed serialized object can cause the React Native application to crash. This can result in a remotely triggered denial of service in applications that pass attacker-controlled data through the affected serialization path. In applications where the attacker-controlled data is persisted, the denial of service may persist across application restarts or repeated attempts to access the affected content.

References

https://github.com/software-mansion/react-native-reanimated/releases/tag/worklets-0.12.2

https://github.com/software-mansion/react-native-reanimated/pull/10462

https://github.com/software-mansion/react-native-reanimated/pull/10451

https://github.com/software-mansion/react-native-reanimated/issues/10436

https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-86500

https://docs.swmansion.com/react-native-reanimated/

Details

Source: Mitre, NVD

Published: 2026-09-25

Updated: 2026-09-30

Risk Information

CVSS v2

Base Score: 5

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Severity: Medium

CVSS v3

Base Score: 4.3

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L

Severity: Medium

CVSS v4

Base Score: 5.3

Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:P/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N

Severity: Medium

EPSS

EPSS: 0.00253