Vulnerability Report: GO-2025-3525
- CVE-2025-29786, GHSA-93mq-9ffx-83m2
- Affects: github.com/expr-lang/expr
- Published: Mar 18, 2025
Memory Exhaustion in Expr Parser with Unrestricted Input in github.com/expr-lang/expr
For detailed information about this vulnerability, visit https://github.com/expr-lang/expr/security/advisories/GHSA-93mq-9ffx-83m2.
Affected Packages
-
PathGo VersionsSymbols
-
before v1.17.0
-
before v1.17.0
Aliases
References
- https://github.com/expr-lang/expr/security/advisories/GHSA-93mq-9ffx-83m2
- https://github.com/expr-lang/expr/commit/0d19441454426d2f58edb22c31f3ba5f99c7a26e
- https://github.com/expr-lang/expr/pull/762
- https://vuln.go.dev/ID/GO-2025-3525.json
Feedback
See anything missing or incorrect?
Suggest an edit to this report.