Known vulnerabilities in loader-utils
Vendor:
webpack
Software:
loader-utils
Software CPE:
cpe:2.3:a:webpack:loader-utils:*:*:*:*:*:*:*:*
Website:
https://webpack.js.org/
Total vulnerabilities:
3
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (3)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU70123 - Improper Control of Generation of Code ('Code Injection') CVE-2022-37601 |
CWE-94 | High | 1.4.1, 2.0.3, 3.2.0 | 12.12.2022 |
SB2022121220 SB2023010419 SB2023011403 and 20 more |
||
| #VU70122 - Incorrect Regular Expression CVE-2022-37599 |
CWE-185 | Medium | 1.4.2, 2.0.4, 3.2.1 | 12.12.2022 |
SB2022121221 SB2023010424 SB2023020920 and 19 more |
||
| #VU70121 - Incorrect Regular Expression CVE-2022-37603 |
CWE-185 | Medium | 1.4.2, 2.0.4, 3.2.1 | 12.12.2022 |
SB2022121221 SB2022121222 SB2023010418 and 29 more |