CVE-2025-5889
Description
A vulnerability was found in juliangruber brace-expansion up to 1.1.11/2.0.1/3.0.0/4.0.0. It has been rated as problematic. Affected by this issue is the function expand of the file index.js. The manipulation leads to inefficient regular expression complexity. The attack may be launched remotely. The complexity of an attack is rather high. The exploitation is known to be difficult. The exploit has been disclosed to the public and may be used. Upgrading to version 1.1.12, 2.0.2, 3.0.1 and 4.0.1 is able to address this issue. The name of the patch is a5b98a4f30d7813266b221435e1eaaf25a1b0ac5. It is recommended to upgrade the affected component.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
brace-expansionnpm | >= 2.0.0, < 2.0.2 | 2.0.2 |
brace-expansionnpm | >= 1.0.0, < 1.1.12 | 1.1.12 |
brace-expansionnpm | >= 3.0.0, < 3.0.1 | 3.0.1 |
brace-expansionnpm | >= 4.0.0, < 4.0.1 | 4.0.1 |
Affected products
301- Range: 1.1.11, v1.0.0, v1.0.1, …
- osv-coords300 versionspkg:apk/chainguard/arangodb-3.11pkg:apk/chainguard/arangodb-3.11-compatpkg:apk/chainguard/arangodb-3.12pkg:apk/chainguard/arangodb-3.12-compatpkg:apk/chainguard/argo-workflow-clipkg:apk/chainguard/argo-workflow-controllerpkg:apk/chainguard/argo-workflow-controller-compatpkg:apk/chainguard/argo-workflow-executorpkg:apk/chainguard/argo-workflow-executor-compatpkg:apk/chainguard/argo-workflowspkg:apk/chainguard/argo-workflows-known-hostspkg:apk/chainguard/argo-workflows-uipkg:apk/chainguard/code-serverpkg:apk/chainguard/code-server-compatpkg:apk/chainguard/emsdkpkg:apk/chainguard/eslintpkg:apk/chainguard/foxx-clipkg:apk/chainguard/graalvm-23pkg:apk/chainguard/graalvm-23-cepkg:apk/chainguard/graalvm-23-ce-dbgpkg:apk/chainguard/graalvm-23-ce-default-jdkpkg:apk/chainguard/graalvm-23-ce-jmodspkg:apk/chainguard/graalvm-23-ce-nodejspkg:apk/chainguard/graalvm-23-ce-nodejs-dbgpkg:apk/chainguard/graalvm-23-ce-nodejs-default-jdkpkg:apk/chainguard/graalvm-23-ce-nodejs-jmodspkg:apk/chainguard/graalvm-23-dbgpkg:apk/chainguard/graalvm-23-default-jdkpkg:apk/chainguard/graalvm-23-graalpypkg:apk/chainguard/graalvm-23-graalpy-venvpkg:apk/chainguard/graalvm-23-jmodspkg:apk/chainguard/graalvm-23-native-image-devpkg:apk/chainguard/graalvm-23-staticpkg:apk/chainguard/graalvm-23-trufflerubypkg:apk/chainguard/graalvm-24pkg:apk/chainguard/graalvm-24-cepkg:apk/chainguard/graalvm-24-ce-dbgpkg:apk/chainguard/graalvm-24-ce-default-jdkpkg:apk/chainguard/graalvm-24-ce-jmodspkg:apk/chainguard/graalvm-24-ce-nodejspkg:apk/chainguard/graalvm-24-ce-nodejs-dbgpkg:apk/chainguard/graalvm-24-ce-nodejs-default-jdkpkg:apk/chainguard/graalvm-24-ce-nodejs-jmodspkg:apk/chainguard/graalvm-24-graalpypkg:apk/chainguard/graalvm-24-graalpy-venvpkg:apk/chainguard/graalvm-24-trufflerubypkg:apk/chainguard/kibana-7pkg:apk/chainguard/kibana-7-bitnamipkg:apk/chainguard/kibana-8pkg:apk/chainguard/kibana-8-bitnamipkg:apk/chainguard/kibana-8-iamguardedpkg:apk/chainguard/kibana-9pkg:apk/chainguard/kibana-9-bitnamipkg:apk/chainguard/kibana-9-iamguardedpkg:apk/chainguard/kubeflow-centraldashboardpkg:apk/chainguard/kubeflow-pipelinespkg:apk/chainguard/kubeflow-pipelines-apiserverpkg:apk/chainguard/kubeflow-pipelines-cache-deployerpkg:apk/chainguard/kubeflow-pipelines-cache-deployer-compatpkg:apk/chainguard/kubeflow-pipelines-cache_serverpkg:apk/chainguard/kubeflow-pipelines-frontendpkg:apk/chainguard/kubeflow-pipelines-metadata-envoy-configpkg:apk/chainguard/kubeflow-pipelines-metadata-writerpkg:apk/chainguard/kubeflow-pipelines-metadata-writer-compatpkg:apk/chainguard/kubeflow-pipelines-persistence_agentpkg:apk/chainguard/kubeflow-pipelines-scheduledworkflowpkg:apk/chainguard/kubeflow-pipelines-viewer-crd-controllerpkg:apk/chainguard/langfuse-3pkg:apk/chainguard/langfuse-3-workerpkg:apk/chainguard/langfuse-fips-3pkg:apk/chainguard/langfuse-fips-3-workerpkg:apk/chainguard/lernapkg:apk/chainguard/node-gyppkg:apk/chainguard/npmpkg:apk/chainguard/npm-10.8.2pkg:apk/chainguard/npm-docpkg:apk/chainguard/opensearch-dashboards-2pkg:apk/chainguard/opensearch-dashboards-2-alerting-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-2-anomaly-detection-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-2-compatpkg:apk/chainguard/opensearch-dashboards-2-configpkg:apk/chainguard/opensearch-dashboards-2-dashboards-mapspkg:apk/chainguard/opensearch-dashboards-2-dashboards-notificationspkg:apk/chainguard/opensearch-dashboards-2-dashboards-observabilitypkg:apk/chainguard/opensearch-dashboards-2-dashboards-query-workbenchpkg:apk/chainguard/opensearch-dashboards-2-dashboards-reportingpkg:apk/chainguard/opensearch-dashboards-2-dashboards-search-relevancepkg:apk/chainguard/opensearch-dashboards-2-dashboards-visualizationspkg:apk/chainguard/opensearch-dashboards-2-fipspkg:apk/chainguard/opensearch-dashboards-2-fips-alerting-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-2-fips-anomaly-detection-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-2-fips-configpkg:apk/chainguard/opensearch-dashboards-2-fips-dashboards-mapspkg:apk/chainguard/opensearch-dashboards-2-fips-dashboards-notificationspkg:apk/chainguard/opensearch-dashboards-2-fips-dashboards-observabilitypkg:apk/chainguard/opensearch-dashboards-2-fips-dashboards-query-workbenchpkg:apk/chainguard/opensearch-dashboards-2-fips-dashboards-reportingpkg:apk/chainguard/opensearch-dashboards-2-fips-dashboards-search-relevancepkg:apk/chainguard/opensearch-dashboards-2-fips-dashboards-visualizationspkg:apk/chainguard/opensearch-dashboards-2-fips-index-management-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-2-fips-ml-commons-dashboardspkg:apk/chainguard/opensearch-dashboards-2-fips-security-analytics-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-2-fips-security-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-2-index-management-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-2-ml-commons-dashboardspkg:apk/chainguard/opensearch-dashboards-2-security-analytics-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-2-security-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-3pkg:apk/chainguard/opensearch-dashboards-3-alerting-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-3-anomaly-detection-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-3-configpkg:apk/chainguard/opensearch-dashboards-3-dashboards-mapspkg:apk/chainguard/opensearch-dashboards-3-dashboards-notificationspkg:apk/chainguard/opensearch-dashboards-3-dashboards-observabilitypkg:apk/chainguard/opensearch-dashboards-3-dashboards-query-workbenchpkg:apk/chainguard/opensearch-dashboards-3-dashboards-reportingpkg:apk/chainguard/opensearch-dashboards-3-dashboards-search-relevancepkg:apk/chainguard/opensearch-dashboards-3-fips-anomaly-detection-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-3-fips-dashboards-observabilitypkg:apk/chainguard/opensearch-dashboards-3-fips-dashboards-query-workbenchpkg:apk/chainguard/opensearch-dashboards-3-fips-dashboards-search-relevancepkg:apk/chainguard/opensearch-dashboards-3-fips-security-analytics-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-3-index-management-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-3-ml-commons-dashboardspkg:apk/chainguard/opensearch-dashboards-3-security-analytics-dashboards-pluginpkg:apk/chainguard/opensearch-dashboards-3-security-dashboards-pluginpkg:apk/chainguard/prismpkg:apk/chainguard/pulumipkg:apk/chainguard/pulumi-language-gopkg:apk/chainguard/pulumi-language-nodejspkg:apk/chainguard/pulumi-language-pythonpkg:apk/chainguard/rancher-api-uipkg:apk/chainguard/renovatepkg:apk/chainguard/sqlpadpkg:apk/chainguard/sqlpad-compatpkg:apk/chainguard/tileserver-glpkg:apk/chainguard/tileserver-gl-compatpkg:apk/chainguard/tileserver-gl-fipspkg:apk/chainguard/tileserver-gl-fips-compatpkg:apk/chainguard/vitess-22pkg:apk/chainguard/vitess-23pkg:apk/wolfi/argo-workflow-clipkg:apk/wolfi/argo-workflow-controllerpkg:apk/wolfi/argo-workflow-controller-compatpkg:apk/wolfi/argo-workflow-executorpkg:apk/wolfi/argo-workflow-executor-compatpkg:apk/wolfi/argo-workflowspkg:apk/wolfi/argo-workflows-known-hostspkg:apk/wolfi/argo-workflows-uipkg:apk/wolfi/code-serverpkg:apk/wolfi/code-server-compatpkg:apk/wolfi/eslintpkg:apk/wolfi/kubeflow-centraldashboardpkg:apk/wolfi/kubeflow-pipelinespkg:apk/wolfi/kubeflow-pipelines-apiserverpkg:apk/wolfi/kubeflow-pipelines-cache-deployerpkg:apk/wolfi/kubeflow-pipelines-cache-deployer-compatpkg:apk/wolfi/kubeflow-pipelines-cache_serverpkg:apk/wolfi/kubeflow-pipelines-frontendpkg:apk/wolfi/kubeflow-pipelines-metadata-envoy-configpkg:apk/wolfi/kubeflow-pipelines-metadata-writerpkg:apk/wolfi/kubeflow-pipelines-metadata-writer-compatpkg:apk/wolfi/kubeflow-pipelines-persistence_agentpkg:apk/wolfi/kubeflow-pipelines-scheduledworkflowpkg:apk/wolfi/kubeflow-pipelines-viewer-crd-controllerpkg:apk/wolfi/langfuse-3pkg:apk/wolfi/langfuse-3-workerpkg:apk/wolfi/lernapkg:apk/wolfi/node-gyppkg:apk/wolfi/npmpkg:apk/wolfi/npm-docpkg:apk/wolfi/opensearch-dashboards-2pkg:apk/wolfi/opensearch-dashboards-2-alerting-dashboards-pluginpkg:apk/wolfi/opensearch-dashboards-2-anomaly-detection-dashboards-pluginpkg:apk/wolfi/opensearch-dashboards-2-compatpkg:apk/wolfi/opensearch-dashboards-2-configpkg:apk/wolfi/opensearch-dashboards-2-dashboards-mapspkg:apk/wolfi/opensearch-dashboards-2-dashboards-notificationspkg:apk/wolfi/opensearch-dashboards-2-dashboards-observabilitypkg:apk/wolfi/opensearch-dashboards-2-dashboards-query-workbenchpkg:apk/wolfi/opensearch-dashboards-2-dashboards-reportingpkg:apk/wolfi/opensearch-dashboards-2-dashboards-search-relevancepkg:apk/wolfi/opensearch-dashboards-2-dashboards-visualizationspkg:apk/wolfi/opensearch-dashboards-2-index-management-dashboards-pluginpkg:apk/wolfi/opensearch-dashboards-2-ml-commons-dashboardspkg:apk/wolfi/opensearch-dashboards-2-security-analytics-dashboards-pluginpkg:apk/wolfi/opensearch-dashboards-2-security-dashboards-pluginpkg:apk/wolfi/opensearch-dashboards-3pkg:apk/wolfi/opensearch-dashboards-3-alerting-dashboards-pluginpkg:apk/wolfi/opensearch-dashboards-3-anomaly-detection-dashboards-pluginpkg:apk/wolfi/opensearch-dashboards-3-configpkg:apk/wolfi/opensearch-dashboards-3-dashboards-mapspkg:apk/wolfi/opensearch-dashboards-3-dashboards-notificationspkg:apk/wolfi/opensearch-dashboards-3-dashboards-observabilitypkg:apk/wolfi/opensearch-dashboards-3-dashboards-query-workbenchpkg:apk/wolfi/opensearch-dashboards-3-dashboards-reportingpkg:apk/wolfi/opensearch-dashboards-3-dashboards-search-relevancepkg:apk/wolfi/opensearch-dashboards-3-index-management-dashboards-pluginpkg:apk/wolfi/opensearch-dashboards-3-ml-commons-dashboardspkg:apk/wolfi/opensearch-dashboards-3-security-analytics-dashboards-pluginpkg:apk/wolfi/opensearch-dashboards-3-security-dashboards-pluginpkg:apk/wolfi/prismpkg:apk/wolfi/pulumipkg:apk/wolfi/pulumi-language-gopkg:apk/wolfi/pulumi-language-nodejspkg:apk/wolfi/pulumi-language-pythonpkg:apk/wolfi/rancher-api-uipkg:apk/wolfi/renovatepkg:apk/wolfi/sqlpadpkg:apk/wolfi/sqlpad-compatpkg:apk/wolfi/tileserver-glpkg:apk/wolfi/tileserver-gl-compatpkg:apk/wolfi/vitess-22pkg:apk/wolfi/vitess-23pkg:npm/brace-expansionpkg:rpm/opensuse/aws-cli&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/python-boto3&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/python-botocore&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/python-bqplot&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-coverage&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/python-flaky&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/python-furo&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-ipympl&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-jupyterlab-templates&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-jupyter-ydoc&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-nbclassic&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-nbdime&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-panel&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-plotly&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-pluggy&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/python-pydata-sphinx-theme&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-pytest-cov&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/python-pytest&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/python-pytest-html&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/python-pytest-mock&distro=openSUSE%20Leap%2015.6pkg:rpm/opensuse/tree-sitter-ruby&distro=openSUSE%20Tumbleweedpkg:rpm/opensuse/velociraptor&distro=openSUSE%20Tumbleweedpkg:rpm/suse/aws-cli&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP4pkg:rpm/suse/aws-cli&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP5pkg:rpm/suse/aws-cli&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP6pkg:rpm/suse/aws-cli&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP7pkg:rpm/suse/python-boto3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP4pkg:rpm/suse/python-boto3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP5pkg:rpm/suse/python-boto3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP6pkg:rpm/suse/python-boto3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP7pkg:rpm/suse/python-botocore&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP4pkg:rpm/suse/python-botocore&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP5pkg:rpm/suse/python-botocore&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2015%20SP6pkg:rpm/suse/python-botocore&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP7pkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-ESPOSpkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-LTSSpkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-ESPOSpkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-LTSSpkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Package%20Hub%2015%20SP6pkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP6pkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP7pkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP4-LTSSpkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP5-LTSSpkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP4pkg:rpm/suse/python-coverage&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP5pkg:rpm/suse/python-pluggy&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-ESPOSpkg:rpm/suse/python-pluggy&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-LTSSpkg:rpm/suse/python-pluggy&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-ESPOSpkg:rpm/suse/python-pluggy&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-LTSSpkg:rpm/suse/python-pluggy&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP6pkg:rpm/suse/python-pluggy&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP7pkg:rpm/suse/python-pluggy&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP4-LTSSpkg:rpm/suse/python-pluggy&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP5-LTSSpkg:rpm/suse/python-pluggy&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP4pkg:rpm/suse/python-pluggy&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP5pkg:rpm/suse/python-pytest-cov&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-ESPOSpkg:rpm/suse/python-pytest-cov&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-LTSSpkg:rpm/suse/python-pytest-cov&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-ESPOSpkg:rpm/suse/python-pytest-cov&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-LTSSpkg:rpm/suse/python-pytest-cov&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP6pkg:rpm/suse/python-pytest-cov&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP7pkg:rpm/suse/python-pytest-cov&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP4-LTSSpkg:rpm/suse/python-pytest-cov&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP5-LTSSpkg:rpm/suse/python-pytest-cov&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP4pkg:rpm/suse/python-pytest-cov&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP5pkg:rpm/suse/python-pytest&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-ESPOSpkg:rpm/suse/python-pytest&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-LTSSpkg:rpm/suse/python-pytest&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-ESPOSpkg:rpm/suse/python-pytest&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-LTSSpkg:rpm/suse/python-pytest&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP6pkg:rpm/suse/python-pytest&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP7pkg:rpm/suse/python-pytest&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP4-LTSSpkg:rpm/suse/python-pytest&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP5-LTSSpkg:rpm/suse/python-pytest&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP4pkg:rpm/suse/python-pytest&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP5pkg:rpm/suse/python-pytest-mock&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-ESPOSpkg:rpm/suse/python-pytest-mock&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP4-LTSSpkg:rpm/suse/python-pytest-mock&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-ESPOSpkg:rpm/suse/python-pytest-mock&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP5-LTSSpkg:rpm/suse/python-pytest-mock&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP6pkg:rpm/suse/python-pytest-mock&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Python%203%2015%20SP7pkg:rpm/suse/python-pytest-mock&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP4-LTSSpkg:rpm/suse/python-pytest-mock&distro=SUSE%20Linux%20Enterprise%20Server%2015%20SP5-LTSSpkg:rpm/suse/python-pytest-mock&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP4pkg:rpm/suse/python-pytest-mock&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2015%20SP5
< 3.11.14-r3+ 299 more
- (no CPE)range: < 3.11.14-r3
- (no CPE)range: < 3.11.14-r3
- (no CPE)range: < 3.12.5-r1
- (no CPE)range: < 3.12.5-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 4.100.3-r1
- (no CPE)range: < 4.100.3-r1
- (no CPE)range: < 5.0.0-r1
- (no CPE)range: < 9.29.0-r0
- (no CPE)range: < 2.1.1-r1
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 23.0.2-r3
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 24.0.1-r2
- (no CPE)range: < 7.17.28-r45
- (no CPE)range: < 7.17.28-r45
- (no CPE)range: < 8.18.2-r3
- (no CPE)range: < 8.18.2-r3
- (no CPE)range: < 8.18.2-r3
- (no CPE)range: < 9.0.2-r3
- (no CPE)range: < 9.0.2-r3
- (no CPE)range: < 9.0.2-r3
- (no CPE)range: < 1.10.0-r1
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 3.179.1-r3
- (no CPE)range: < 3.179.1-r3
- (no CPE)range: < 3.179.1-r2
- (no CPE)range: < 3.179.1-r2
- (no CPE)range: < 8.2.2-r2
- (no CPE)range: < 11.3.0-r0
- (no CPE)range: < 11.4.2-r0
- (no CPE)range: < 10.8.2-r4
- (no CPE)range: < 11.4.2-r0
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r1
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.5.0-r4
- (no CPE)range: < 3.5.0-r4
- (no CPE)range: < 3.5.0-r4
- (no CPE)range: < 3.5.0-r4
- (no CPE)range: < 3.5.0-r4
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 5.14.2-r2
- (no CPE)range: < 3.176.0-r0
- (no CPE)range: < 3.176.0-r0
- (no CPE)range: < 3.176.0-r0
- (no CPE)range: < 3.176.0-r0
- (no CPE)range: < 1.2.3-r1
- (no CPE)range: < 40.51.0-r0
- (no CPE)range: < 7.5.4-r0
- (no CPE)range: < 7.5.4-r0
- (no CPE)range: < 5.3.1-r4
- (no CPE)range: < 5.3.1-r4
- (no CPE)range: < 5.3.1-r3
- (no CPE)range: < 5.3.1-r3
- (no CPE)range: < 22.0.3-r0
- (no CPE)range: < 23.0.1-r0
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 3.6.10-r1
- (no CPE)range: < 4.100.3-r1
- (no CPE)range: < 4.100.3-r1
- (no CPE)range: < 9.29.0-r0
- (no CPE)range: < 1.10.0-r1
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 2.5.0-r3
- (no CPE)range: < 3.179.1-r3
- (no CPE)range: < 3.179.1-r3
- (no CPE)range: < 8.2.2-r2
- (no CPE)range: < 11.3.0-r0
- (no CPE)range: < 11.4.2-r0
- (no CPE)range: < 11.4.2-r0
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 2.19.2-r2
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 3.0.0-r1
- (no CPE)range: < 5.14.2-r2
- (no CPE)range: < 3.176.0-r0
- (no CPE)range: < 3.176.0-r0
- (no CPE)range: < 3.176.0-r0
- (no CPE)range: < 3.176.0-r0
- (no CPE)range: < 1.2.3-r1
- (no CPE)range: < 40.51.0-r0
- (no CPE)range: < 7.5.4-r0
- (no CPE)range: < 7.5.4-r0
- (no CPE)range: < 5.3.1-r4
- (no CPE)range: < 5.3.1-r4
- (no CPE)range: < 22.0.3-r0
- (no CPE)range: < 23.0.1-r0
- (no CPE)range: >= 2.0.0, < 2.0.2
- (no CPE)range: < 1.33.26-150400.34.7.1
- (no CPE)range: < 1.34.138-150400.27.7.1
- (no CPE)range: < 1.34.144-150400.41.7.1
- (no CPE)range: < 0.12.45-10.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 3.8.1-150400.14.6.1
- (no CPE)range: < 2024.8.6-3.1
- (no CPE)range: < 0.9.4-15.1
- (no CPE)range: < 0.5.2-2.1
- (no CPE)range: < 3.1.0-1.1
- (no CPE)range: < 1.3.1-1.1
- (no CPE)range: < 4.0.2-20.1
- (no CPE)range: < 1.7.1-1.1
- (no CPE)range: < 6.1.2-1.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 0.16.1-1.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 4.1.1-6.1
- (no CPE)range: < 3.14.0-150400.13.6.1
- (no CPE)range: < 0.23.1-2.1
- (no CPE)range: < 0.7.0.4.git185.a5708584-2.1
- (no CPE)range: < 1.33.26-150400.34.7.1
- (no CPE)range: < 1.33.26-150400.34.7.1
- (no CPE)range: < 1.33.26-150400.34.7.1
- (no CPE)range: < 1.33.26-150400.34.7.1
- (no CPE)range: < 1.34.138-150400.27.7.1
- (no CPE)range: < 1.34.138-150400.27.7.1
- (no CPE)range: < 1.34.138-150400.27.7.1
- (no CPE)range: < 1.34.138-150400.27.7.1
- (no CPE)range: < 1.34.144-150400.41.7.1
- (no CPE)range: < 1.34.144-150400.41.7.1
- (no CPE)range: < 1.34.144-150400.41.7.1
- (no CPE)range: < 1.34.144-150400.41.7.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 7.6.10-150400.12.6.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 1.5.0-150400.14.10.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 6.2.1-150400.12.6.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 8.3.5-150400.3.9.1
- (no CPE)range: < 3.14.0-150400.13.6.1
- (no CPE)range: < 3.14.0-150400.13.6.1
- (no CPE)range: < 3.14.0-150400.13.6.1
- (no CPE)range: < 3.14.0-150400.13.6.1
- (no CPE)range: < 3.14.0-150400.13.6.1
- (no CPE)range: < 3.14.0-150400.13.6.1
- (no CPE)range: < 3.14.0-150400.13.6.1
- (no CPE)range: < 3.14.0-150400.13.6.1
- (no CPE)range: < 3.14.0-150400.13.6.1
- (no CPE)range: < 3.14.0-150400.13.6.1
Patches
Vulnerability mechanics
References
12- github.com/advisories/GHSA-v6h2-p8h4-qcjwghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2025-5889ghsaADVISORY
- gist.github.com/mmmsssttt404/37a40ce7d6e5ca604858fe30814d9466nvdWEB
- github.com/juliangruber/brace-expansion/commit/0b6a9781e18e9d2769bb2931f4856d1360243ed2ghsaWEB
- github.com/juliangruber/brace-expansion/commit/15f9b3c75ebf5988198241fecaebdc45eff28a9fghsaWEB
- github.com/juliangruber/brace-expansion/commit/36603d5f3599a37af9e85eda30acd7d28599c36eghsaWEB
- github.com/juliangruber/brace-expansion/commit/c3c73c8b088defc70851843be88ccc3af08e7217ghsaWEB
- github.com/juliangruber/brace-expansion/pull/65/commits/a5b98a4f30d7813266b221435e1eaaf25a1b0ac5nvdWEB
- vuldb.comnvdWEB
- vuldb.comnvdWEB
- vuldb.comnvdWEB
- github.com/juliangruber/brace-expansion/releases/tag/v4.0.1nvd
News mentions
0No linked articles in our index yet.