CVE-2026-48801

Aliases:GHSA-22p9-wv53-3rq4UBUNTU-CVE-2026-48801CGA-35pq-7p7c-qgr5CGA-398r-vw72-qwgrCGA-2vgm-ccjp-x35hCGA-3535-mjvw-5hj3CGA-364c-fpq3-xx4vCGA-38wj-5fq9-4m5vCGA-3mq7-wp32-jqqjCGA-4cf8-vx49-2hxwCGA-4r45-c8q6-3wgqCGA-529f-fm46-9jqjCGA-53wx-4r3j-2hgxCGA-54g9-525q-5865CGA-55g5-f5gm-94hxCGA-5825-wxmv-f56rCGA-58mq-6mjr-pf7rCGA-5g5m-c43c-w8j5CGA-5hj3-w5jj-5gc3CGA-6r6f-cv8r-4xcrCGA-6rp2-75m2-v8g8CGA-6v8j-hvp2-chqhCGA-7548-wjm5-fgm5CGA-766x-6hp3-86xpCGA-793m-9pfm-f3hmCGA-7vj5-hp2q-22v8CGA-7xmq-859j-mhjcCGA-84qc-r66p-6g9wCGA-88h3-749c-3fvqCGA-8vw3-v676-j99xCGA-9567-h3fr-wp24CGA-95rc-wp3w-xx9cCGA-98hw-x5wf-rfqxCGA-ch99-gg96-4pmfCGA-crq4-7q6j-3r32CGA-fcxq-qf33-hjfgCGA-ffc8-xw5m-mwh6CGA-fhj2-p4c5-cxgfCGA-gc8f-px4c-mrw7CGA-gj7c-wjhm-p3x6CGA-grqv-j8r7-h5xvCGA-h2qv-rhcq-jg7vCGA-h3v2-2hxh-pqhvCGA-h5ww-fgg8-5fp7CGA-h958-c989-v382CGA-hfc9-3h99-c2m3CGA-hfvh-vvqf-cxhmCGA-hp4x-xrw7-hx4jCGA-hr34-f643-whjgCGA-hrw2-wr56-3fmpCGA-hw7f-rr55-mq5pCGA-hxcg-m454-j923CGA-j7mv-wcfv-crxqCGA-mg47-489h-xrphCGA-mhp5-3q39-726vCGA-p3fm-gw6x-j7wmCGA-pj57-8w4v-9q8hCGA-pvvj-c7wr-x7f6CGA-q7p6-wg27-rm5fCGA-q95f-83p5-75c8CGA-qh2w-gpr7-fcppCGA-qhjh-whqm-7879CGA-qpjm-jg56-rxxfCGA-r2hj-c7cx-92rhCGA-rwjq-3j98-qx92CGA-rxgv-xp8c-63g6CGA-v2w2-97jg-rr8qCGA-vrr5-cpqg-86grCGA-whcg-cw77-9g9gCGA-wv6j-x23m-c6p8CGA-xh26-h4h3-x3w8CGA-xr2f-3ffp-9vfc
Advisory lineage Upstream: 0 Downstream: 4
Analyzed
Published: 14 Jul 2026, 20:03
Last modified:15 Jul 2026, 12:56

Vulnerability Summary

Overall Risk (default)
medium
45/100
CVSS Score
8.7 HIGH
v4.0 (cve.org)
EPSS Score
0.37% LOW
0% probability 0.00%
KEV
Not listed
Ransomware
No reports
Public exploits
1 found
Dark Web
Not detected

Timeline

14 Jul 2026, 20:03
Published
Vulnerability first disclosed
15 Jul 2026, 12:56
Last Modified
Vulnerability information updated

Description

linkify-it is a links recognition library with full Unicode support. Prior to 5.0.1, LinkifyIt.prototype.match, the package's primary public API, has O(N²) algorithmic complexity for inputs containing many fuzzy links or emails because the JavaScript-level scan loop re-slices input and re-runs unanchored regex searches on progressively shorter tails. Any service that synchronously renders untrusted Markdown with linkify:true on a request hot path can inherit a worker-process denial of service triggerable by a tens-of-KB request body. This issue is fixed in version 5.0.1.

CVSS Metrics

  • v4.0HIGHScore: 8.7CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
  • v4.0HIGHScore: 8.7CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • v3.1HIGHScore: 7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS Trends

Current EPSS score: 0.37% Percentile: 30%

Techniques & Countermeasures

  • CWE-1333Inefficient Regular Expression Complexity

    The product uses a regular expression with a worst-case computational complexity that is inefficient and possibly exponential.

Affected Systems

  • chainguardargo-workflows-ui-3.6

    < 3.6.19-r7

  • chainguardgitlab-rails-ce-18.1

    < 18.1.6-r24

  • chainguardgitlab-rails-ce-18.10

    all

  • chainguardgitlab-rails-ce-18.11

    < 18.11.6-r10

  • chainguardgitlab-rails-ce-18.5

    all

  • chainguardgitlab-rails-ce-18.6

    all

  • chainguardgitlab-rails-ce-18.7

    all

  • chainguardgitlab-rails-ce-18.8

    all

  • chainguardgitlab-rails-ce-18.9

    all

  • chainguardgitlab-rails-ce-19.0

    < 19.0.4-r5

  • chainguardgitlab-rails-ce-19.1

    < 19.1.2-r5

  • chainguardgitlab-rails-ce-fips-18.1

    < 18.1.6-r81

  • chainguardgitlab-rails-ce-fips-18.10

    all

  • chainguardgitlab-rails-ce-fips-18.11

    < 18.11.7-r4

  • chainguardgitlab-rails-ce-fips-18.5

    all

  • chainguardgitlab-rails-ce-fips-18.6

    all

  • chainguardgitlab-rails-ce-fips-18.7

    all

  • chainguardgitlab-rails-ce-fips-18.8

    all

  • chainguardgitlab-rails-ce-fips-18.9

    all

  • chainguardgitlab-rails-ce-fips-19.0

    < 19.0.4-r10

  • chainguardgitlab-rails-ce-fips-19.1

    < 19.1.3-r0

  • chainguardgitlab-rails-ce-fips-19.2

    < 19.2.1-r2

  • chainguardkibana-7

    all

  • chainguardkibana-8.19

    < 8.19.17-r2

  • chainguardkibana-8.19-bitnami

    < 8.19.17-r2

  • chainguardkibana-8.19-iamguarded

    < 8.19.17-r2

  • chainguardkibana-9.2

    < 9.2.8-r15

  • chainguardkibana-9.2-iamguarded

    < 9.2.8-r15

  • chainguardkibana-9.4

    < 9.4.2-r6

  • chainguardkibana-9.4-iamguarded

    < 9.4.2-r6

  • chainguardopensearch-dashboards-3-dashboards-observability

    < 3.7.0-r5

  • chainguardopensearch-dashboards-3-fips-dashboards-observability

    < 3.7.0-r3

  • chainguardsemaphore

    < 2.18.12-r2

  • chainguardvitess-22

    all

  • wolfiopensearch-dashboards-3-dashboards-observability

    < 3.7.0-r5

  • ubuntunode-markdown-it

    all | all | all

  • markdown-itlinkify-it

    < 5.0.1

  • Npmlinkify-it

    < 5.0.1

References (7)