Hi,

CVE-2026-4867 is fixed since version 0.1.13 (branch 0) while we have versions 6.2.0 --> 8.3.0, so "not-affected".

Ref: https://github.com/pillarjs/path-to-regexp/security/advisories/GHSA-37ch-88jc-xwx2

Verified also using "pkgjs-audit node-path-to-regexp".

Best regards,
Xavier

Reply via email to