silentmatt CVE Vulnerabilities & CVE List (2)

Products (CPE): — CVEs: 2

silentmatt vulnerability overview

This page aggregates publicly disclosed CVE and security risk information related to silentmatt, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.

Vulnerability distribution trend (last 24 months)

Showing 12 of 2 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2025-13204 npm package `expr-eval` is vulnerable to Prototype Pollution. An attacker with access to express eval interface can use JavaScript prototype-based inheritance model to achieve arbitrary code execution. The npm expr-eval-fork package resolves this issue. [email protected] 7.3 0.41% 2025-11-14 2026-06-17
CVE-2025-12735 The expr-eval library is a JavaScript expression parser and evaluator designed to safely evaluate mathematical expressions with user-defined variables. However, due to insufficient input validation, an attacker can pass a crafted context object or use MEMBER of the context object into the evaluate() function and trigger arbitrary code execution. [email protected] 9.8 2.15% 2025-11-04 2026-06-17
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence