Nixpkgs security tracker

Login with GitHub
⚠️ You are using a production deployment that is still only suitable for demo purposes. Any work done in this might be wiped later without notice.

Suggestions search

With package: openbabel

Found 1 matching suggestions

View:
Compact
Detailed
Untriaged
Permalink CVE-2026-44728
8.2 HIGH
  • CVSS version (CVSS): 3.1
  • Attack Vector (AV): Local (L)
  • Attack Complexity (AC): Low (L)
  • Privileges Required (PR): Low (L)
  • User Interaction (UI): Required (R)
  • Scope (S): Changed (C)
  • Confidentiality (C): High (H)
  • Integrity (I): High (H)
  • Availability (A): High (H)
  • Modified Attack Vector (MAV): Local (L)
  • Modified Attack Complexity (MAC): Low (L)
  • Modified Privileges Required (MPR): Low (L)
  • Modified User Interaction (MUI): Required (R)
  • Modified Confidentiality (MC): High (H)
  • Modified Scope (MS): Changed (C)
  • Modified Integrity (MI): High (H)
  • Modified Availability (MA): High (H)
created 5 days, 22 hours ago Activity log
  • Created suggestion
Improper Control of Generation of Code when compiling specifically crafted malicious code with @babel/plugin-transform-modules-systemjs

Babel is a compiler for writing next generation JavaScript. From 7.12.0 to before 7.29.4 and 8.0.0-alpha.13, using Babel to compile code that was specifically crafted by an attacker can cause Babel to generate output code that executes arbitrary code. This vulnerability is fixed in 7.29.4 and 8.0.0-alpha.13.

Affected products

babel
  • ==>= 8.0.0-alpha.0, < 8.0.0-alpha.13
  • ==>= 7.12.0, < 7.29.4
plugin-transform-modules-systemjs
  • ==>= 8.0.0-alpha.0, < 8.0.0-alpha.13
  • ==>= 7.12.0, < 7.29.4

Matching in nixpkgs

pkgs.babeldoc

PDF scientific paper translation and bilingual comparison library

pkgs.gpsbabel

Convert, upload and download data from GPS and Map programs

pkgs.babeltrace

Command-line tool and library to read and convert LTTng tracefiles

pkgs.babeltrace2

Babeltrace /ˈbæbəltreɪs/ is an open-source trace manipulation toolkit

pkgs.gpsbabel-gui

Convert, upload and download data from GPS and Map programs

Package maintainers