HIGH7.5npm
GHSA-23c5-xmqv-rm74· CVE-2026-27904minimatch ReDoS: nested *() extglobs generate catastrophically backtracking regular expressions
Modified: 9/10/2026
package
pkg:npm/minimatch
minimatch ReDoS: nested *() extglobs generate catastrophically backtracking regular expressions
Modified: 9/10/2026
minimatch has a ReDoS via repeated wildcards with non-matching literal in pattern
Modified: 9/10/2026
minimatch has ReDoS: matchOne() combinatorial backtracking via multiple non-adjacent GLOBSTAR segments
Modified: 9/10/2026
minimatch ReDoS vulnerability
Modified: 9/10/2026
Regular Expression Denial of Service in minimatch
Modified: 11/8/2023