Vuln
·
Scope
Home
Packages
KEV
Critical
Insights
Jobs
Pricing
EN
中
pkg:npm/
picomatch
2 total CVEs
HIGH
1
MEDIUM
1
✅ Check your installed version
Check
All known vulnerabilities
HIGH
7.5
CVE-2026-33671
Picomatch has a ReDoS vulnerability via extglob quantifiers
>= 4.0.0, < 4.0.4
MEDIUM
5.3
CVE-2026-33672
Picomatch: Method Injection in POSIX Character Classes causes incorrect Glob Matching
>= 4.0.0, < 4.0.4