CVE-2026-22774 PUBLISHED CVSS 7.5 HIGH

Devalue is vulnerable to denial of service due to memory exhaustion in devalue.parse

EPSS 0.02% · 5.0th percentile

Risk Scores

CVSS v3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
0.02%
5.0th percentile

Affected Products

VendorProductVersions
npmdevalue5.3.0
sveltedevalue5.3.0
sveltejsdevalue>= 5.3.0, < 5.6.2

Timeline

References

Open in Interactive Console →