A vulnerability was found in pnpm up to 10.34.1/11.5.2 . It has been declared as problematic . The impacted element is an unknown function. The manipulation results in origin validation error. This vulnerability is cataloged as CVE-2026-55487 . The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected component.