A vulnerability was found in isaacs brace-expansion up to 5.0.0. It has been rated as problematic. The affected element is an unknown function. This manipulation causes inefficient regular expression complexity.

The identification of this vulnerability is CVE-2026-25547. It is possible to initiate the attack remotely. There is no exploit available.

Upgrading the affected component is advised.