CyberICT

CVE-2025-27789

Microsoft · Published August 7, 2026

CVSS v3.1

MEDIUM
Patch availableGet patch

Description

Inefficient RexExp complexity in generated code with .replace when transpiling named capturing groups. Inefficient RexExp complexity in generated code with .replace when transpiling named capturing groups

Affected Products

  • azl3 babel 2.15.0-1 on Azure Linux 3.0

CVSS Vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H