Medikoo develops JavaScript utility libraries, with its primary exposure centered on the es5-ext module that provides polyfills and extensions for ES5 compatibility. The recurring vulnerability pattern involves inefficient regular expression complexity and uncontrolled resource-consumption issues, reflecting input-handling characteristics common to utility libraries that process diverse data types. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Medikoo over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-27088MEDIUM es5-ext contains ECMAScript 5 extensions. Passing functions with very long names or complex default argument names into `function#copy` or `function#toStringTokens` may cause the s | Feb 26, 2024 | 5.5 | 17 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Medikoo.
Media articles that mention a CVE ID that affects a product developed by Medikoo — matched by CVE ID, not by vendor name.