CWE-1333

High likelihood

Inefficient Regular Expression Complexity

Parent: CWE-407 - Inefficient Algorithmic Complexity

The product uses a regular expression with a worst-case computational complexity that is inefficient and possibly exponential.

410 vulnerabilities with CWE-1333
CVE-2026-26996 HIGH
minimatch <=10.2.0 - DoS
CVSS 7.5
CVE-2026-2327 MEDIUM
markdown-it <14.1.1 - DoS
CVSS 5.3
CVE-2026-26006 MEDIUM
AutoGPT <0.6.32 - DoS
CVSS 6.5
CVE-2026-25547 CRITICAL
Isaacs Brace-expansion < 5.0.1 - Denial of Service
CVE-2026-23897 HIGH
Apollo Server <5.4.0 - DoS
CVSS 7.5
CVE-2026-24001 HIGH
jsdiff <8.0.3, 5.2.2, 4.0.4, 3.5.1 - DoS
CVSS 7.5
CVE-2026-23956 HIGH
seroval <1.4.1 - ReDoS
CVSS 7.5
CVE-2026-22809 MEDIUM
Amauri Tarteaucitronjs < 1.29.0 - Denial of Service
CVSS 4.4
CVE-2026-22691 MEDIUM
pypdf <6.6.0 - Info Disclosure
CVSS 5.3
CVE-2026-21868 HIGH
Flagforge < 2.3.3 - Denial of Service
CVSS 7.5
CVE-2026-0668 MEDIUM
MediaWiki - VisualData Extension <1.45 - RCE
CVSS 5.3
CVE-2026-0621 HIGH
Lfprojects Mcp Typescript SDK < 1.25.1 - Denial of Service
CVSS 7.5
CVE-2025-70030 HIGH
Sunbird-Ed SunbirdEd-portal 1.13.4 - DoS
CVSS 7.5
CVE-2025-70034 HIGH
mscdex ssh2 1.17.0 - DoS
CVSS 7.5
CVE-2025-10990 HIGH
REXML - DoS
CVSS 7.5
CVE-2025-69873 LOW
ajv <8.17.1 - ReDoS
CVSS 2.9
CVE-2025-68475 HIGH
Fedify < 1.6.13 - Denial of Service
CVSS 7.5
CVE-2025-68142 MEDIUM
Facelessuser Pymdown Extensions < 10.16.1 - Denial of Service
CVSS 5.3
CVE-2025-66020 HIGH
Valibot <1.1.0 - DoS
CVSS 7.5
CVE-2025-62484 HIGH
Zoom Workplace Clients <6.5.10 - Privilege Escalation
CVSS 8.1
CVE-2025-5342 MEDIUM
Zohocorp Manageengine Exchange Reporter Plus < 5.7 - Denial of Service
CVSS 4.3
CVE-2025-61581 HIGH
Apache Traffic Control - Info Disclosure
CVSS 7.5
CVE-2025-61921 HIGH
Sinatra < 4.2.0 - Denial of Service
CVSS 7.5
CVE-2025-6051 MEDIUM
Hugging Face Transformers <4.52.4 - DoS
CVSS 5.3
CVE-2025-6638 HIGH
Huggingface Transformers < 4.53.0 - Denial of Service
CVSS 7.5
Details
Vulnerabilities 410
Exploit Likelihood High