CVE-2026-59168
- EPSS 0.13%
- Veröffentlicht 21.09.2026 16:55:07
- Zuletzt bearbeitet 24.09.2026 21:25:27
Dasel is a command-line tool and library for querying, modifying, and transforming data structures. From 3.0.0 until 3.11.1, parsing/json/json_reader.go decodeValue, decodeObject, and decodeArray, and parsing/xml/reader.go parseElement, recurse once ...
CVE-2026-62866
- EPSS 0.19%
- Veröffentlicht 21.09.2026 16:51:18
- Zuletzt bearbeitet 24.09.2026 21:25:27
Dasel is a command-line tool and library for querying, modifying, and transforming data structures. From 3.0.0 until 3.11.2, selector/lexer/tokenize.go parseCurRune advances the input index across trailing whitespace and then reads the source at the ...
CVE-2026-46377
- EPSS 0.13%
- Veröffentlicht 16.07.2026 17:57:16
- Zuletzt bearbeitet 17.07.2026 18:33:28
Dasel is a command-line tool and library for querying, modifying, and transforming data structures. From 3.0.0 until 3.10.1, the escape sequence handler in (*Tokenizer).parseCurRune in selector/lexer/tokenize.go increments past a trailing backslash i...
CVE-2026-46378
- EPSS 0.11%
- Veröffentlicht 16.07.2026 17:54:51
- Zuletzt bearbeitet 17.07.2026 18:36:41
Dasel is a command-line tool and library for querying, modifying, and transforming data structures. From 3.0.0 until 3.10.1, the selector lexer matchRegexPattern closure in (*Tokenizer).parseCurRune in selector/lexer/tokenize.go loops while tokenizin...
CVE-2026-33320
- EPSS 0.21%
- Veröffentlicht 24.03.2026 00:06:22
- Zuletzt bearbeitet 25.03.2026 16:08:49
Dasel is a command-line tool and library for querying, modifying, and transforming data structures. Starting in version 3.0.0 and prior to version 3.3.1, Dasel's YAML reader allows an attacker who can supply YAML for processing to trigger extreme CPU...