Skip to main content
Loading…
    CVE-2025-59140 — backlash parses collected strings with escapes. On 8 September 2025, the npm publishing account for backslash was taken over after a phishing attack. Version 0.2.1 was published, functionally identica — CVE Database · The Intelligence Room