← Back

Glob Parent

glob-parent

Vendor: Gulpjs • 2 CVEs

CVEs (2)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Gulpjs
1Glob Parent
Apr 14, 2025
Dec 26, 2022
N/A· v4
7.5 HIGH· v3
N/A· v2
The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the enclosure regular expression.
2Gulpjs
Oracle
2Communications Cloud Native Core Policy
Glob Parent
Nov 21, 2024
Jun 3, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
This affects the package glob-parent before 5.1.2. The enclosure regex used to check for strings ending in enclosure containing path separator.