VULNRABLE / Vulnerability / CVE-2026-71429
CVE-2026-71429
MEDIUM LOW stream-json GHSA
Exploit verdict: No active-exploit signal
CVSS Score
5.5
Severity
MEDIUM
EPSS
—
Source
GHSA
Summary
stream-json: pick/ignore/filter/replace filters are O(depth²) on nested input — small crafted JSON blocks the event loop for seconds→minutes (DoS)
What this means
CVE-2026-71429 is a medium-severity vulnerability affecting stream-json, rated CVSS 5.5. Published September 4, 2026.
View full advisory at GHSA →