VYPR
Medium severity4.3NVD Advisory· Published Jul 5, 2025· Updated Apr 29, 2026

CVE-2025-7074

CVE-2025-7074

Description

A vulnerability classified as problematic has been found in vercel hyper up to 3.4.1. This affects the function expand/braceExpand/ignoreMap of the file hyper/bin/rimraf-standalone.js. The manipulation leads to inefficient regular expression complexity. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

Affected products

1
  • cpe:2.3:a:vercel:hyper:*:*:*:*:*:*:*:*
    Range: <=3.4.1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

4

News mentions

0

No linked articles in our index yet.