Babel is a compiler for writing next generation JavaScript. From 7.12.0 to before 7.29.4 and 8.0.0-alpha.13, using Babel to compile code that was specifically crafted by an attacker can cause Babel to generate output code that executes arbitrary code. This vulnerability is fixed in 7.29.4 and 8.0.0-alpha.13.
References
| Link | Resource |
|---|---|
| https://github.com/babel/babel/security/advisories/GHSA-fv7c-fp4j-7gwp | Mitigation Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2026-05-26 18:16
Updated : 2026-07-24 11:10
NVD link : CVE-2026-44728
Mitre link : CVE-2026-44728
CVE.ORG link : CVE-2026-44728
JSON object : View
Products Affected
babel
- babel
