juliangruber brace-expansion
8 known vulnerabilities in juliangruber brace-expansion, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-102278 CVSS 7.5 high The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.20, 2.1.6, 3.0.8, and 5.0.11…
- CVE-2026-102277 CVSS 5.3 medium The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.21, 2.1.7, 3.0.9, and 5.0.12…
- CVE-2026-102276 CVSS 7.5 high The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.19, 2.1.5, 3.0.7, and 5.0.10…
- CVE-2026-69152 CVSS 7.5 high The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to 1.1.18, 2.1.4, 3.0.6, and 5.0.9…
- CVE-2026-14257 CVSS 7.5 high brace-expansion through 5.0.7 is vulnerable to denial of service via memory exhaustion. The expand() function limits the number of results…
- CVE-2026-13149 CVSS 7.7 high brace-expansion through 5.0.6 is vulnerable to denial of service. The expand() function exhibits exponential-time complexity in the number…
- CVE-2026-33750 CVSS 7.5 high The brace-expansion library generates arbitrary strings containing a common prefix and suffix. Prior to versions 5.0.5, 3.0.2, 2.0.3, and…
- CVE-2025-5889 CVSS 1.3 low A vulnerability was found in juliangruber brace-expansion up to 1.1.11/2.0.1/3.0.0/4.0.0. It has been rated as problematic. Affected by…