Vulnerability Details CVE-2026-44777
jq is a command-line JSON processor. In 1.8.2rc1 and earlier, the ordinary module loader recurses without cycle detection when two
otherwise valid modules include each other.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 2.3%
CVSS Severity
CVSS v3 Score 5.5
Products affected by CVE-2026-44777
-
-
-
-
-
-
-
-
-
cpe:2.3:a:jqlang:jq:1.7-37-g88f01a7
-
cpe:2.3:a:jqlang:jq:1.7.1