No published models are known to use this package.
cvss
0.0
medium
severity band, no base score published
epss
not scored
chance of exploitation in 30 days
xyz score
not scored
CyberXYZ composite out of 10
fig. 01 — GHSA-jgvr-6x5w-hx5w, the advisory selected below
// 2 advisories
GHSA-jgvr-6x5w-hx5w
MODERATE
// impact
Feeding a KCL program that wraps an expression in deep, unnecessary parentheses triggers the parser’s recursive expression -> unnecessarilybracketed -> expression path. With enough nesting, the call stack grows until it exceeds the process stack limit, causing a stack overflow.
Checked 2026-10-04 at 01:15 UTC. The most recent advisory here was published 2026-08-20. Updated continuously from NVD, GHSA, OSV and CNA feeds.