VYPR

source-map-js

by 7rulnik

CVEs (1)

  • CVE-2026-93749HigSep 18, 2026
    risk 0.49cvss 7.5epss

    source-map-js through 1.2.1 fails to validate the per-section offset line value in indexed source maps, allowing attackers to specify arbitrary numeric values. Attackers can supply extremely large offset line values that cause synchronous event loop blocking for extended…