Known vulnerabilities in brace-expansion
Vendor:
Julian Gruber
Software:
brace-expansion
Software CPE:
cpe:2.3:a:juliangruber:brace-expansion:*:*:*:*:*:*:*:*
Website:
https://github.com/juliangruber
Total vulnerabilities:
7
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.8
Breakdown by Severity Chart
Vulnerabilities (7)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU140707 - Resource exhaustion CVE-2026-69152 |
CWE-400 | Medium | 2.0.0, 2.1.4, 3.0.6, 5.0.9 | 01.08.2026 |
SB2026080125 SB2026081044 |
||
| #VU140706 - Allocation of Resources Without Limits or Throttling CVE-2026-14257 |
CWE-770 | Medium | 1.1.17, 2.1.3, 3.0.3, 5.0.8 | 01.08.2026 |
SB2026080124 |
||
| #VU135820 - Inefficient Algorithmic Complexity CVE-2026-13149 |
CWE-407 | Medium | 5.0.7 | 29.06.2026 |
SB20260629111 SB2026072843 SB2026072877 and 10 more |
||
| #VU131107 - Resource exhaustion CVE-2026-45149 |
CWE-400 | Medium | 5.0.6 | 12.05.2026 |
SB2026051222 SB2026061993 SB2026061994 and 1 more |
||
| #VU128397 - Improper input validation CVE-2026-33750 |
CWE-20 | Medium | 1.1.13, 2.0.3, 3.0.2, 5.0.5 | 28.04.2026 |
SB20260428215 SB20260428223 SB2026042934 and 6 more |
||
| #VU124876 - Inefficient Regular Expression Complexity CVE-2026-25547 |
CWE-1333 | Low | 5.0.1 | 06.04.2026 |
SB2026040628 SB2026040631 SB2026040632 and 13 more |
||
| #VU112890 - Inefficient Regular Expression Complexity CVE-2025-5889 |
CWE-1333 | Low | 1.1.12, 2.0.2, 3.0.1, 4.0.1 | 15.07.2025 |
SB2025071511 SB2025071512 SB2025071513 and 33 more |