PatchSiren

kokke CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

LOW kokke CVE published 2026-06-08

CVE-2026-11478

A vulnerability has been identified in kokke tiny-regex-c, up to version f2632c6d9ed25272987471cdb8b70395c2460bdb, within the Pattern Handler component. Specifically, the matchstar function in the re.c file is affected, leading to inefficient regular expression complexity. This issue is exploitable locally and has been publicly disclosed. The product follows a rolling release strategy, making it challengi [truncated]