Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Mon, 08 Jun 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 08 Jun 2026 03:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A flaw has been found in kokke tiny-regex-c up to f2632c6d9ed25272987471cdb8b70395c2460bdb. This vulnerability affects the function matchstar of the file re.c of the component Pattern Handler. This manipulation causes inefficient regular expression complexity. The attack is restricted to local execution. The exploit has been published and may be used. This product adopts a rolling release strategy to maintain continuous delivery. Therefore, version details for affected or updated releases cannot be specified. The project was informed of the problem early through an issue report but has not responded yet. | |
| Title | kokke tiny-regex-c Pattern re.c matchstar redos | |
| First Time appeared |
Kokke
Kokke tiny-regex-c |
|
| Weaknesses | CWE-1333 CWE-400 |
|
| CPEs | cpe:2.3:a:kokke:tiny-regex-c:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Kokke
Kokke tiny-regex-c |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-06-08T10:59:56.190Z
Reserved: 2026-06-07T09:42:50.401Z
Link: CVE-2026-11478
Updated: 2026-06-08T10:59:52.601Z
Status : Deferred
Published: 2026-06-08T03:16:19.997
Modified: 2026-06-08T14:57:14.757
Link: CVE-2026-11478
No data.
OpenCVE Enrichment
Updated: 2026-06-09T08:57:37Z