CVE-2026-33671 | micromatch picomatch up to 2.3.1/3.0.1/4.0.3 redos
A vulnerability was found in micromatch picomatch up to 2.3.1/3.0.1/4.0.3. It has been classified as problematic. Affected is an unknown function. Performing a manipulation results in inefficient regular expression complexity.
This vulnerability is known as CVE-2026-33671. Remote exploitation of the attack is possible. No exploit is available.
Upgrading the affected component is recommended.