[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2022-41715":6},{"stargazers_count":4,"fetched_at":5},7,"2026-06-05T02:55:30.529Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":18,"aliases":19,"duplicate_of":9,"upstream":22,"downstream":23,"duplicates":104,"related":105,"reserved_at":9,"published_at":123,"modified_at":124,"state":125,"summary":126,"references_raw":135,"kevs":167,"epss":168,"epss_history":171,"metrics":425,"affected":431},"CVE-2022-41715","Programs which compile regular expressions from untrusted sources may be vulnerable to memory exhaustion or denial of service. The parsed regexp representation is linear in the size of the input, but in some cases the constant factor can be as high as 40,000, making relatively small regexps consume much larger amounts of memory. After fix, each regexp being parsed is limited to a 256 MB memory footprint. Regular expressions whose representation would use more space than that are rejected. Normal use of regular expressions is unaffected.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":9,"likelihood_of_exploit":9,"capec":17},"NVD-CWE-OTHER","Other","NVD uses this CWE ID when the weakness does not map to any existing CWE entry.","placeholder","NVD-Reserved",[],[],[20,21],"GO-2022-1039","BIT-golang-2022-41715",[],[24,26,28,30,32,34,36,38,40,42,44,46,48,50,52,54,56,58,60,62,64,66,68,70,72,74,76,78,80,82,84,86,88,90,92,94,96,98,100,102],{"_key":25},"SUSE-SU-2022:3668-1",{"_key":27},"SUSE-SU-2024:0487-1",{"_key":29},"SUSE-SU-2023:2183-1",{"_key":31},"SUSE-SU-2023:2579-1",{"_key":33},"SUSE-SU-2024:0191-1",{"_key":35},"SUSE-SU-2024:0196-1",{"_key":37},"SUSE-SU-2024:0486-1",{"_key":39},"UBUNTU-CVE-2022-41715",{"_key":41},"SUSE-SU-2022:3669-1",{"_key":43},"SUSE-SU-2023:2182-1",{"_key":45},"SUSE-SU-2023:2312-1",{"_key":47},"SUSE-SU-2023:2578-1",{"_key":49},"SUSE-SU-2023:2598-1",{"_key":51},"SUSE-SU-2024:3288-1",{"_key":53},"OPENSUSE-SU-2024:12391-1",{"_key":55},"OPENSUSE-SU-2024:12392-1",{"_key":57},"OPENSUSE-SU-2024:13604-1",{"_key":59},"MGASA-2022-0377",{"_key":61},"USN-6038-1",{"_key":63},"DEBIAN-CVE-2022-41715",{"_key":65},"RHSA-2023:0445",{"_key":67},"RHSA-2023:0708",{"_key":69},"RHSA-2023:2167",{"_key":71},"RHSA-2023:2204",{"_key":73},"RHSA-2023:2592",{"_key":75},"RHSA-2023:2780",{"_key":77},"RHSA-2023:2784",{"_key":79},"RHSA-2023:2866",{"_key":81},"RHSA-2023:3613",{"_key":83},"RHSA-2024:0121",{"_key":85},"RHSA-2024:2586",{"_key":87},"RHSA-2022:7398",{"_key":89},"RHSA-2023:0328",{"_key":91},"RHSA-2023:0446",{"_key":93},"RHSA-2023:0727",{"_key":95},"RHSA-2023:1275",{"_key":97},"RHSA-2023:2357",{"_key":99},"RHSA-2023:4003",{"_key":101},"RHSA-2024:2988",{"_key":103},"RHSA-2024:3254",[],[106,107,108,109,110,111,112,113,114,115,116,117,118,119,120,121,122],{"_key":25},{"_key":27},{"_key":29},{"_key":31},{"_key":33},{"_key":35},{"_key":37},{"_key":41},{"_key":43},{"_key":45},{"_key":47},{"_key":49},{"_key":51},{"_key":53},{"_key":55},{"_key":57},{"_key":59},"2022-10-14T00:00:00.000Z","2025-02-13T16:33:07.652Z","Modified",{"cisa_kev":127,"cisa_ransomware":127,"cisa_vendor":9,"epss_severity":128,"epss_score":129,"severity":130,"severity_score":131,"severity_version":132,"severity_source":133,"severity_vector":134,"severity_status":125},false,"low",0.00016,"high",7.5,"v3.1","nvd","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",[136,145,151,158,163],{"url":137,"sources":138,"tags":141},"https://go.dev/issue/55949",[139,133,140],"cve.org","osv_go",[142,143,144],"Issue Tracking","Third Party Advisory","REPORT",{"url":146,"sources":147,"tags":148},"https://go.dev/cl/439356",[139,133,140],[149,150],"Patch","FIX",{"url":152,"sources":153,"tags":154},"https://groups.google.com/g/golang-announce/c/xtuG5faxtaU",[139,133,140],[155,156,157],"Mailing List","Release Notes","WEB",{"url":159,"sources":160,"tags":161},"https://pkg.go.dev/vuln/GO-2022-1039",[139,133],[162],"Vendor Advisory",{"url":164,"sources":165,"tags":166},"https://security.gentoo.org/glsa/202311-09",[139,133],[],[],{"date":169,"score":129,"percentile":170},"2026-06-04",0.0405,[172,175,178,181,184,187,190,193,196,199,202,205,208,211,214,218,221,224,227,230,233,236,239,242,245,247,250,252,255,258,261,264,267,270,273,275,278,281,284,287,290,292,295,298,300,303,306,308,311,314,316,319,322,325,328,331,334,336,339,342,345,348,351,353,355,357,360,363,366,369,371,374,376,379,382,384,386,388,391,394,396,399,402,405,408,410,413,416,419,422],{"date":173,"score":129,"percentile":174},"2025-11-04",0.02682,{"date":176,"score":129,"percentile":177},"2025-11-05",0.02708,{"date":179,"score":129,"percentile":180},"2025-11-06",0.02736,{"date":182,"score":129,"percentile":183},"2025-11-07",0.02746,{"date":185,"score":129,"percentile":186},"2025-11-08",0.02752,{"date":188,"score":129,"percentile":189},"2025-11-09",0.02755,{"date":191,"score":129,"percentile":192},"2025-11-10",0.02735,{"date":194,"score":129,"percentile":195},"2025-11-11",0.02757,{"date":197,"score":129,"percentile":198},"2025-11-12",0.02772,{"date":200,"score":129,"percentile":201},"2025-11-13",0.02801,{"date":203,"score":129,"percentile":204},"2025-11-14",0.02822,{"date":206,"score":129,"percentile":207},"2025-11-15",0.02848,{"date":209,"score":129,"percentile":210},"2025-11-16",0.02849,{"date":212,"score":129,"percentile":213},"2025-11-17",0.02834,{"date":215,"score":216,"percentile":217},"2025-11-18",0.0084,0.72678,{"date":219,"score":216,"percentile":220},"2025-11-19",0.72685,{"date":222,"score":216,"percentile":223},"2025-11-20",0.72694,{"date":225,"score":129,"percentile":226},"2025-11-21",0.02921,{"date":228,"score":129,"percentile":229},"2025-11-22",0.0292,{"date":231,"score":129,"percentile":232},"2025-11-23",0.02914,{"date":234,"score":129,"percentile":235},"2025-11-24",0.02903,{"date":237,"score":129,"percentile":238},"2025-11-25",0.02884,{"date":240,"score":129,"percentile":241},"2025-11-26",0.02863,{"date":243,"score":129,"percentile":244},"2025-11-27",0.0286,{"date":246,"score":129,"percentile":244},"2025-11-28",{"date":248,"score":129,"percentile":249},"2025-11-29",0.02913,{"date":251,"score":129,"percentile":232},"2025-11-30",{"date":253,"score":129,"percentile":254},"2025-12-01",0.02989,{"date":256,"score":129,"percentile":257},"2025-12-02",0.02986,{"date":259,"score":129,"percentile":260},"2025-12-03",0.0299,{"date":262,"score":129,"percentile":263},"2025-12-04",0.02917,{"date":265,"score":129,"percentile":266},"2025-12-05",0.02937,{"date":268,"score":129,"percentile":269},"2025-12-06",0.02959,{"date":271,"score":129,"percentile":272},"2025-12-07",0.02962,{"date":274,"score":129,"percentile":269},"2025-12-08",{"date":276,"score":129,"percentile":277},"2025-12-09",0.02977,{"date":279,"score":129,"percentile":280},"2025-12-10",0.03008,{"date":282,"score":129,"percentile":283},"2025-12-11",0.03005,{"date":285,"score":129,"percentile":286},"2025-12-12",0.03014,{"date":288,"score":129,"percentile":289},"2025-12-13",0.02987,{"date":291,"score":129,"percentile":260},"2025-12-14",{"date":293,"score":129,"percentile":294},"2025-12-15",0.02981,{"date":296,"score":129,"percentile":297},"2025-12-16",0.02973,{"date":299,"score":129,"percentile":260},"2025-12-17",{"date":301,"score":129,"percentile":302},"2025-12-18",0.02997,{"date":304,"score":129,"percentile":305},"2025-12-19",0.02996,{"date":307,"score":129,"percentile":260},"2025-12-20",{"date":309,"score":129,"percentile":310},"2025-12-21",0.03004,{"date":312,"score":129,"percentile":313},"2025-12-22",0.03001,{"date":315,"score":129,"percentile":280},"2025-12-23",{"date":317,"score":129,"percentile":318},"2025-12-24",0.03009,{"date":320,"score":129,"percentile":321},"2025-12-25",0.03015,{"date":323,"score":129,"percentile":324},"2025-12-26",0.03018,{"date":326,"score":129,"percentile":327},"2025-12-27",0.03002,{"date":329,"score":129,"percentile":330},"2025-12-28",0.0301,{"date":332,"score":129,"percentile":333},"2025-12-29",0.02999,{"date":335,"score":129,"percentile":305},"2025-12-30",{"date":337,"score":129,"percentile":338},"2025-12-31",0.02991,{"date":340,"score":129,"percentile":341},"2026-01-01",0.03071,{"date":343,"score":129,"percentile":344},"2026-01-02",0.03065,{"date":346,"score":129,"percentile":347},"2026-01-03",0.03063,{"date":349,"score":129,"percentile":350},"2026-01-04",0.02976,{"date":352,"score":129,"percentile":277},"2026-01-05",{"date":354,"score":129,"percentile":350},"2026-01-06",{"date":356,"score":129,"percentile":302},"2026-01-07",{"date":358,"score":129,"percentile":359},"2026-01-08",0.03024,{"date":361,"score":129,"percentile":362},"2026-01-09",0.03037,{"date":364,"score":129,"percentile":365},"2026-01-10",0.03042,{"date":367,"score":129,"percentile":368},"2026-01-11",0.03025,{"date":370,"score":129,"percentile":289},"2026-01-12",{"date":372,"score":129,"percentile":373},"2026-01-13",0.02978,{"date":375,"score":129,"percentile":289},"2026-01-14",{"date":377,"score":129,"percentile":378},"2026-01-15",0.02971,{"date":380,"score":129,"percentile":381},"2026-01-16",0.0297,{"date":383,"score":129,"percentile":378},"2026-01-17",{"date":385,"score":129,"percentile":297},"2026-01-18",{"date":387,"score":129,"percentile":272},"2026-01-19",{"date":389,"score":129,"percentile":390},"2026-01-20",0.02951,{"date":392,"score":129,"percentile":393},"2026-01-21",0.02941,{"date":395,"score":129,"percentile":393},"2026-01-22",{"date":397,"score":129,"percentile":398},"2026-01-23",0.02949,{"date":400,"score":129,"percentile":401},"2026-01-24",0.02966,{"date":403,"score":129,"percentile":404},"2026-01-25",0.02963,{"date":406,"score":129,"percentile":407},"2026-01-26",0.02956,{"date":409,"score":129,"percentile":407},"2026-01-27",{"date":411,"score":129,"percentile":412},"2026-01-28",0.0296,{"date":414,"score":129,"percentile":415},"2026-01-29",0.02985,{"date":417,"score":129,"percentile":418},"2026-01-30",0.02988,{"date":420,"score":129,"percentile":421},"2026-01-31",0.03007,{"date":423,"score":129,"percentile":424},"2026-02-01",0.03079,[426],{"source":133,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":427,"cvss_v4_0":9},{"baseScore":131,"baseSeverity":428,"vectorString":134,"impactScore":429,"exploitabilityScore":430},"HIGH",6,10,[432,447,457],{"ecosystem":9,"name":433,"vendor":434,"product":433,"cpe_part":435,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":436},"regexp/syntax","go standard library","a",[437,442],{"version":438,"is_range":439,"range_type":139,"version_start":9,"version_start_type":9,"version_end":440,"version_end_type":441,"fixed_in":9},"\u003C 1.18.7",true,"1.18.7","excluding",{"version":443,"is_range":439,"range_type":139,"version_start":444,"version_start_type":445,"version_end":446,"version_end_type":441,"fixed_in":9},">= 1.19.0-0, \u003C 1.19.2","1.19.0-0","including","1.19.2",{"ecosystem":9,"name":448,"vendor":449,"product":448,"cpe_part":435,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":450},"go","golang",[451,454],{"version":452,"is_range":439,"range_type":453,"version_start":9,"version_start_type":9,"version_end":440,"version_end_type":441,"fixed_in":9},"lt1.18.7","cpe",{"version":455,"is_range":439,"range_type":453,"version_start":456,"version_start_type":445,"version_end":446,"version_end_type":441,"fixed_in":9},"gte1.19.0_lt1.19.2","1.19.0",{"ecosystem":458,"name":459,"vendor":458,"product":459,"cpe_part":9,"purl_type":449,"purl_namespace":9,"purl_name":459,"source":9,"versions":460},"Go","stdlib",[461],{"version":462,"is_range":439,"range_type":463,"version_start":444,"version_start_type":445,"version_end":446,"version_end_type":441,"fixed_in":9},"gte1_19_0_0_lt1_19_2","semver"]