Hi,CVE-2026-4867 is fixed since version 0.1.13 (branch 0) while we have versions 6.2.0 --> 8.3.0, so "not-affected".
Ref: https://github.com/pillarjs/path-to-regexp/security/advisories/GHSA-37ch-88jc-xwx2
Verified also using "pkgjs-audit node-path-to-regexp". Best regards, Xavier
