CVE-2025-25200 | koajs koa up to 0.21.1/1.7.0/2.15.3/3.0.0-alpha.2 ES2017 redos (GHSA-593f-38f6-jp5m)
A vulnerability categorized as problematic has been discovered in koajs koa up to 0.21.1/1.7.0/2.15.3/3.0.0-alpha.2. This vulnerability affects unknown code of the component ES2017. Such manipulation leads to inefficient regular expression complexity.
This vulnerability is uniquely identified as CVE-2025-25200. The attack can be launched remotely. No exploit exists.
It is advisable to upgrade the affected component.