Skip to main content

Vendor/product archive

jonschlinkert / braces CVEs

Beta · best-effort

1 CVEs tagged to jonschlinkert / braces0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2024-4068

Published May 14, 2024

The NPM package `braces`, versions prior to 3.0.3, fails to limit the number of characters it can handle, which could lead to Memory Exhaustion. In `lib/parse.js,` if a malicious…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1