Junglewise Threat Intelligence

CVE-2026-74784: Scriban: array.insert_at index parameter DoS bypasses LoopLimit and LimitToString

CVE-2026-74784 · Severity: medium · CVSS 4 · Published 2026-05-19

Technologies: Scriban.Signed (NuGet), scriban (NuGet). Vendors: NuGet.

Executive brief

Scriban: array.insert_at index parameter DoS bypasses LoopLimit and LimitToString

Affected products

  • NuGet Scriban.Signed
  • NuGet scriban

Related threats