Vendorspillarjspath-to-regexpall versions
Vulnerabilities

pillarjs Path-to-RegExp

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2026-4926
path-to-regexp vulnerable to Denial of Service via sequential optional groups
Published 2026-03-26 · Modified
7.5EPSS 0.009
CVE-2026-4867
path-to-regexp vulnerable to Regular Expression Denial of Service via multiple route parameters
Published 2026-03-26 · Analyzed
7.5EPSS 0.006
CVE-2026-4923
path-to-regexp vulnerable to Regular Expression Denial of Service via multiple wildcards
Published 2026-03-26 · Analyzed
5.9EPSS 0.004