TomWright has 3 CVEs on record. 2 were published in the last 90 days. The median CVSS is 6.2 (medium). Most affected products: dasel (2), github.com/tomwright/dasel/v3 (1).
CVEs per month
Last 12 months, by publish date
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 6.2
- Publish → KEV
- —
- Last 90 days
- 2 prev 0
Worst active — by depth score
CVE-2026-33320Medium· 6.2Dasel has unbounded YAML alias expansion in dasel leads to CPU/memory denial of service46CVE-2026-62866Medium· 6.2Dasel is a command-line tool and library for querying, modifying, and transforming data structures34CVE-2026-59168Medium· 6.2Dasel is a command-line tool and library for querying, modifying, and transforming data structures34
TomWright vulnerabilities
CVEs affecting TomWright, newest first. Open any entry for full detail, references, and exploit status.
3 CVEsRSS
CVE-2026-62866Medium· 6.2Dasel is a command-line tool and library for querying, modifying, and transforming data structures
Dasel is a command-line tool and library for querying, modifying, and transforming data structures. From 3.0.0 until 3.11.2, selector/lexer/tokenize.go parseCurRune advances the input index across trailing whitespace and then reads the s…
CVE-2026-59168Medium· 6.2Dasel is a command-line tool and library for querying, modifying, and transforming data structures
Dasel is a command-line tool and library for querying, modifying, and transforming data structures. From 3.0.0 until 3.11.1, parsing/json/json_reader.go decodeValue, decodeObject, and decodeArray, and parsing/xml/reader.go parseElement, …
CVE-2026-33320Medium· 6.2PoCDasel has unbounded YAML alias expansion in dasel leads to CPU/memory denial of service
Dasel has unbounded YAML alias expansion in dasel leads to CPU/memory denial of service