GulpjsCVEs & Vulnerabilities
3 CVEs affecting Gulpjs products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
3 CVEs→ All vendors
Most Affected Products
glob-parent 2copy-props 1
CVE-2021-35065HIGH
The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the enclosure regular expression.
26 Dec 2022
7.5
CVSS
CVE-2020-28469HIGH
This affects the package glob-parent before 5.1.2. The enclosure regex used to check for strings ending in enclosure containing path separator.
3 Jun 2021
7.5
CVSS
CVE-2020-28503CRITICAL
The package copy-props before 2.0.5 are vulnerable to Prototype Pollution via the main functionality.
23 Mar 2021
9.8
CVSS
← PrevPage 1 / 1Next →