Логотип exploitDog
bind:"CVE-2025-5889"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2025-5889"

Количество 7

Количество 7

ubuntu логотип

CVE-2025-5889

5 месяцев назад

A vulnerability was found in juliangruber brace-expansion up to 1.1.11/2.0.1/3.0.0/4.0.0. It has been rated as problematic. Affected by this issue is the function expand of the file index.js. The manipulation leads to inefficient regular expression complexity. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.12, 2.0.2, 3.0.1 and 4.0.1 is able to address this issue. The name of the patch is a5b98a4f30d7813266b221435e1eaaf25a1b0ac5. It is recommended to upgrade the affected component.

CVSS3: 3.1
EPSS: Низкий
redhat логотип

CVE-2025-5889

5 месяцев назад

A vulnerability was found in juliangruber brace-expansion up to 1.1.11/2.0.1/3.0.0/4.0.0. It has been rated as problematic. Affected by this issue is the function expand of the file index.js. The manipulation leads to inefficient regular expression complexity. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.12, 2.0.2, 3.0.1 and 4.0.1 is able to address this issue. The name of the patch is a5b98a4f30d7813266b221435e1eaaf25a1b0ac5. It is recommended to upgrade the affected component.

CVSS3: 3.1
EPSS: Низкий
nvd логотип

CVE-2025-5889

5 месяцев назад

A vulnerability was found in juliangruber brace-expansion up to 1.1.11/2.0.1/3.0.0/4.0.0. It has been rated as problematic. Affected by this issue is the function expand of the file index.js. The manipulation leads to inefficient regular expression complexity. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.12, 2.0.2, 3.0.1 and 4.0.1 is able to address this issue. The name of the patch is a5b98a4f30d7813266b221435e1eaaf25a1b0ac5. It is recommended to upgrade the affected component.

CVSS3: 3.1
EPSS: Низкий
msrc логотип

CVE-2025-5889

2 месяца назад

juliangruber brace-expansion index.js expand redos

CVSS3: 3.1
EPSS: Низкий
debian логотип

CVE-2025-5889

5 месяцев назад

A vulnerability was found in juliangruber brace-expansion up to 1.1.11 ...

CVSS3: 3.1
EPSS: Низкий
github логотип

GHSA-v6h2-p8h4-qcjw

5 месяцев назад

brace-expansion Regular Expression Denial of Service vulnerability

CVSS3: 3.1
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:3744-1

13 дней назад

Security update for aws-cli, local-npm-registry, python-boto3, python-botocore, python-coverage, python-flaky, python-pluggy, python-pytest, python-pytest-cov, python-pytest-html, python-pytest-metadata, python-pytest-mock

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2025-5889

A vulnerability was found in juliangruber brace-expansion up to 1.1.11/2.0.1/3.0.0/4.0.0. It has been rated as problematic. Affected by this issue is the function expand of the file index.js. The manipulation leads to inefficient regular expression complexity. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.12, 2.0.2, 3.0.1 and 4.0.1 is able to address this issue. The name of the patch is a5b98a4f30d7813266b221435e1eaaf25a1b0ac5. It is recommended to upgrade the affected component.

CVSS3: 3.1
0%
Низкий
5 месяцев назад
redhat логотип
CVE-2025-5889

A vulnerability was found in juliangruber brace-expansion up to 1.1.11/2.0.1/3.0.0/4.0.0. It has been rated as problematic. Affected by this issue is the function expand of the file index.js. The manipulation leads to inefficient regular expression complexity. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.12, 2.0.2, 3.0.1 and 4.0.1 is able to address this issue. The name of the patch is a5b98a4f30d7813266b221435e1eaaf25a1b0ac5. It is recommended to upgrade the affected component.

CVSS3: 3.1
0%
Низкий
5 месяцев назад
nvd логотип
CVE-2025-5889

A vulnerability was found in juliangruber brace-expansion up to 1.1.11/2.0.1/3.0.0/4.0.0. It has been rated as problematic. Affected by this issue is the function expand of the file index.js. The manipulation leads to inefficient regular expression complexity. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.12, 2.0.2, 3.0.1 and 4.0.1 is able to address this issue. The name of the patch is a5b98a4f30d7813266b221435e1eaaf25a1b0ac5. It is recommended to upgrade the affected component.

CVSS3: 3.1
0%
Низкий
5 месяцев назад
msrc логотип
CVE-2025-5889

juliangruber brace-expansion index.js expand redos

CVSS3: 3.1
0%
Низкий
2 месяца назад
debian логотип
CVE-2025-5889

A vulnerability was found in juliangruber brace-expansion up to 1.1.11 ...

CVSS3: 3.1
0%
Низкий
5 месяцев назад
github логотип
GHSA-v6h2-p8h4-qcjw

brace-expansion Regular Expression Denial of Service vulnerability

CVSS3: 3.1
0%
Низкий
5 месяцев назад
suse-cvrf логотип
SUSE-SU-2025:3744-1

Security update for aws-cli, local-npm-registry, python-boto3, python-botocore, python-coverage, python-flaky, python-pluggy, python-pytest, python-pytest-cov, python-pytest-html, python-pytest-metadata, python-pytest-mock

13 дней назад

Уязвимостей на страницу