Skip to main content
Version: v1.2.x

GHSA-5P4M-2WFM-XMQJ

CVE Details

Visit the official vulnerability details page for GHSA-5P4M-2WFM-XMQJ to learn more.

Initial Publication

08/06/2026

Last Update

08/06/2026

Third Party Dependency

js-yaml

NIST CVE Summary

JS-YAML: Quadratic CPU consumption in !!omap resolution (3.x and 4.x) — CVE-2026-59870 fix not backported

CVE Severity

7.5

Our Official Summary

Investigation is ongoing to determine how this vulnerability affects our products.

Status

fixed

Affected Products & Versions

VersionPaletteAIPaletteAI VerteX
1.2.1⚠️ Impacted⚠️ Impacted

Revision History

No revisions available.