Brace expansion as known from sh/bash
96%
Total Score
100
97
99
100
0
| Title | Versions | Severity |
|---|---|---|
AIKIDO-2026-872981 brace-expansion is vulnerable to Denial of Service (DoS) in versions 0.0.1 - 1.1.17, 2.0.0 - 2.1.3, 3.0.0 - 3.0.5 and 4.0.0 - 5.0.8. | 0.0.1 - 1.1.172.0.0 - 2.1.33.0.0 - 3.0.5 +1 more | High |
CVE-2026-14257 brace-expansion is vulnerable to Uncontrolled Resource Consumption in versions 4.0.0 - 5.0.8, 3.0.0 - 3.0.3, 2.0.0 - 2.1.3 and 0.0.0 - 1.1.17. | 0.0.0 - 1.1.172.0.0 - 2.1.33.0.0 - 3.0.3 +1 more | High |
AIKIDO-2026-237551 brace-expansion is vulnerable to Denial of Service (DoS) in versions 1.0.0 - 1.1.15, 2.0.0 - 2.1.1 and 3.0.0 - 5.0.6. | 1.0.0 - 1.1.152.0.0 - 2.1.13.0.0 - 5.0.6 | Medium |
CVE-2026-45149 brace-expansion is vulnerable to Uncontrolled Resource Consumption in versions 5.0.0 - 5.0.6. | 5.0.0 - 5.0.6 | Medium |
AIKIDO-2026-10477 brace-expansion is vulnerable to Denial of Service (DoS) in versions 1.0.0 - 1.1.13 and 2.0.0 - 2.0.3. | 1.0.0 - 1.1.132.0.0 - 2.0.3 | Medium |
| Dependency | Last Release | Score |
|---|---|---|
balanced-match Version ^4.0.2 | — | — |
Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.
Free. No credit card required.

I consent to receiving marketing communications based on Aikido’s Privacy Policy.
SOC 2Compliant
ISO 27001Compliant
ISO 42001Compliant© All Intel data is openly available and commercially licensed.