Description
A Regular expression denial of service (ReDoS) flaw was found in Function interpolateName in interpolateName.js in webpack loader-utils 2.0.0 via the resourcePath variable in interpolateName.js.
Published: 2022-10-11
Score: 7.5 High
EPSS: 4.0% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
Github GHSA Github GHSA GHSA-hhq3-ff78-jv3g loader-utils is vulnerable to Regular Expression Denial of Service (ReDoS)
History

Tue, 04 Nov 2025 19:30:00 +0000


Wed, 16 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.05846}

epss

{'score': 0.04702}


Subscriptions

Redhat Jboss Enterprise Bpms Platform
Webpack.js Loader-utils
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2025-11-04T18:14:20.740Z

Reserved: 2022-08-08T00:00:00.000Z

Link: CVE-2022-37599

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-10-11T19:15:11.853

Modified: 2025-11-04T19:15:40.947

Link: CVE-2022-37599

cve-icon Redhat

Severity : Moderate

Publid Date: 2022-10-14T00:00:00Z

Links: CVE-2022-37599 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses