VYPR

ANTLR4

by Antlr

CVEs (3)

  • CVE-2026-13500HigJun 28, 2026
    risk 0.47cvss 7.3epss 0.00

    A weakness has been identified in antlr ANTLR4 up to 4.13.2. Affected is an unknown function of the file tool/src/org/antlr/v4/codegen/model/OutputFile.java of the component Grammar Action Block Handler. Executing a manipulation can lead to code injection. The attack may be…

  • CVE-2026-13503MedJun 28, 2026
    risk 0.34cvss 5.3epss 0.01

    A vulnerability was detected in antlr ANTLR4 up to 4.13.2. Affected by this issue is the function getImportedVocabFile of the file tool/src/org/antlr/v4/parse/TokenVocabParser.java of the component tokenVocab Grammar Option Handler. The manipulation results in path traversal.…

  • CVE-2026-13502MedJun 28, 2026
    risk 0.29cvss 4.5epss 0.00

    A flaw has been found in antlr ANTLR4 up to 4.13.2. This affects the function ObjectInputStream.readObject of the file antlr4-maven-plugin/src/main/java/org/antlr/mojo/antlr4/GrammarDependencies.java of the component Maven Plugin. This manipulation causes time-of-check…