Peerigon's vulnerability profile centers on the Angular Expressions library, a templating and expression-evaluation component used in web applications. The durable exposure pattern reflects the inherent risks of dynamic code evaluation: recurring weakness classes include injection attacks, code injection, and eval-injection flaws that arise from improper neutralization of user-supplied input in template contexts. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Peerigon over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2026-44643CRITICAL Angular Expressions provides expressions for the Angular.JS web framework as a standalone module. Prior to 1.5.2, an attacker can write a malicious expression using filters that es | May 11, 2026 | 10.0 | 35 | NO | NO |
CVE-2021-21277HIGH angular-expressions is "angular's nicest part extracted as a standalone module for the browser and node". In angular-expressions before version 1.1.2 there is a vulnerability which | Feb 1, 2021 | 8.8 | 27 | NO | NO |
CVE-2020-5219HIGH Angular Expressions before version 1.0.1 has a remote code execution vulnerability if you call expressions.compile(userControlledInput) where userControlledInput is text that comes | Jan 24, 2020 | 8.8 | 26 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Peerigon.
Media articles that mention a CVE ID that affects a product developed by Peerigon — matched by CVE ID, not by vendor name.