{"schema_version":1,"title":"JLine vulnerabilities","summary":"Junglewise Threat Intelligence has tracked 8 vulnerabilities in JLine: 4 in the last 7 days and 6 in the last 90 days, 0 of them critical and 0 exploited in the wild. The most recent, CVE-2026-77423, was published on 23 September 2026. 1 technology has a page of its own.","url":"https://junglewise.ai/threats/vendors/jline","json_url":"https://junglewise.ai/threats/vendors/jline.json","publisher":"Junglewise Threat Intelligence","license":"CC-BY-4.0","license_url":"https://creativecommons.org/licenses/by/4.0/","attribution":"Junglewise Threat Intelligence, https://junglewise.ai/threats/vendors/jline","sources":"NVD, GitHub Security Advisories, OSV, the CISA Known Exploited Vulnerabilities catalog, FIRST EPSS and vendor advisories","kind":"vendor","counts":{"high":6,"all_time":8,"critical":0,"exploited":0,"last_7_days":4,"last_30_days":4,"last_90_days":6,"last_365_days":8},"latest":[{"cve":"CVE-2026-77423","cvss":7.5,"epss":0.0039,"slug":"cve-2026-77423-jline-is-a-java-library-for-handling-console-input-from-3-0-0","title":"JLine regular expression denial of service in less viewer","severity":"high","exploited":false,"published_at":"2026-09-23T19:19:16.017+00:00","url":"https://junglewise.ai/threats/cve-2026-77423-jline-is-a-java-library-for-handling-console-input-from-3-0-0"},{"cve":"CVE-2026-77422","cvss":7.5,"epss":0.005,"slug":"cve-2026-77422-jline-redos-in-built-in-grep-command","title":"JLine is a Java library for handling console input. From 3.0.0 until 3.30.15 and 4.3.1, the JLine built-in grep command in builtins/src/main","severity":"high","exploited":false,"published_at":"2026-09-23T19:19:15.863+00:00","url":"https://junglewise.ai/threats/cve-2026-77422-jline-redos-in-built-in-grep-command"},{"cve":"CVE-2026-77421","cvss":6.5,"epss":0.0043,"slug":"cve-2026-77421-jline-nano-editor-redos-in-regex-search-mode","title":"JLine is a Java library for handling console input. From 3.0.0 until 3.30.15 and 4.3.1, the JLine built-in nano editor's regex search mode p","severity":"medium","exploited":false,"published_at":"2026-09-23T19:19:15.7+00:00","url":"https://junglewise.ai/threats/cve-2026-77421-jline-nano-editor-redos-in-regex-search-mode"},{"cve":"CVE-2026-77420","cvss":5.5,"epss":0.0012,"slug":"cve-2026-77420-jline-history-ignore-redos-via-unescaped-regex-metacharacters","title":"JLine is a Java library for handling console input. From 3.0.0 until 3.30.15 and 4.3.1, DefaultHistory.matchPatterns(String patterns, String","severity":"medium","exploited":false,"published_at":"2026-09-23T19:19:15.51+00:00","url":"https://junglewise.ai/threats/cve-2026-77420-jline-history-ignore-redos-via-unescaped-regex-metacharacters"},{"cve":"CVE-2026-56741","cvss":7.5,"epss":0.0089,"slug":"cve-2026-56741-jline-jline3-denial-of-service-in-telnet-server-naws-handling","title":"JLine JLine3 denial of service in Telnet server NAWS handling","severity":"high","exploited":false,"published_at":"2026-07-17T22:17:57.317+00:00","url":"https://junglewise.ai/threats/cve-2026-56741-jline-jline3-denial-of-service-in-telnet-server-naws-handling"},{"cve":"CVE-2026-56740","cvss":7.5,"epss":0.0088,"slug":"cve-2026-56740-jline-jline3-denial-of-service-in-telnet-server-new-environ","title":"JLine JLine3 denial of service in Telnet server NEW-ENVIRON handling","severity":"high","exploited":false,"published_at":"2026-07-17T22:17:57.153+00:00","url":"https://junglewise.ai/threats/cve-2026-56740-jline-jline3-denial-of-service-in-telnet-server-new-environ"},{"cvss":7.5,"slug":"jline3-telnet-server-memory-exhaustion-in-remote-telnet-module-ec821c4d","title":"JLine3 Telnet server memory exhaustion in remote-telnet module","severity":"high","exploited":false,"published_at":"2026-06-18T13:07:25+00:00","url":"https://junglewise.ai/threats/jline3-telnet-server-memory-exhaustion-in-remote-telnet-module-ec821c4d"},{"cvss":7.5,"slug":"jline-jline3-remote-telnet-denial-of-service-via-unbounded-naws-59fc55bd","title":"JLine JLine3 remote-telnet denial of service via unbounded NAWS terminal geometry","severity":"high","exploited":false,"published_at":"2026-06-18T13:07:16+00:00","url":"https://junglewise.ai/threats/jline-jline3-remote-telnet-denial-of-service-via-unbounded-naws-59fc55bd"}],"vendor":{"hub":true,"name":"JLine","slug":"jline","homepage":"https://github.com/jline/jline3","description":"The maintainers of the JLine Java library for handling console input.","url":"https://junglewise.ai/threats/vendors/jline"},"weekly":[{"week":"2026-06-29","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-06","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-13","critical":0,"exploited":0,"vulnerabilities":2},{"week":"2026-07-20","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-07-27","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-03","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-10","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-17","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-24","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-08-31","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-07","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-14","critical":0,"exploited":0,"vulnerabilities":0},{"week":"2026-09-21","critical":0,"exploited":0,"vulnerabilities":4}],"most_severe":[{"cve":"CVE-2026-56741","cvss":7.5,"epss":0.0089,"slug":"cve-2026-56741-jline-jline3-denial-of-service-in-telnet-server-naws-handling","title":"JLine JLine3 denial of service in Telnet server NAWS handling","severity":"high","exploited":false,"published_at":"2026-07-17T22:17:57.317+00:00","url":"https://junglewise.ai/threats/cve-2026-56741-jline-jline3-denial-of-service-in-telnet-server-naws-handling"},{"cve":"CVE-2026-56740","cvss":7.5,"epss":0.0088,"slug":"cve-2026-56740-jline-jline3-denial-of-service-in-telnet-server-new-environ","title":"JLine JLine3 denial of service in Telnet server NEW-ENVIRON handling","severity":"high","exploited":false,"published_at":"2026-07-17T22:17:57.153+00:00","url":"https://junglewise.ai/threats/cve-2026-56740-jline-jline3-denial-of-service-in-telnet-server-new-environ"},{"cve":"CVE-2026-77422","cvss":7.5,"epss":0.005,"slug":"cve-2026-77422-jline-redos-in-built-in-grep-command","title":"JLine is a Java library for handling console input. From 3.0.0 until 3.30.15 and 4.3.1, the JLine built-in grep command in builtins/src/main","severity":"high","exploited":false,"published_at":"2026-09-23T19:19:15.863+00:00","url":"https://junglewise.ai/threats/cve-2026-77422-jline-redos-in-built-in-grep-command"},{"cve":"CVE-2026-77423","cvss":7.5,"epss":0.0039,"slug":"cve-2026-77423-jline-is-a-java-library-for-handling-console-input-from-3-0-0","title":"JLine regular expression denial of service in less viewer","severity":"high","exploited":false,"published_at":"2026-09-23T19:19:16.017+00:00","url":"https://junglewise.ai/threats/cve-2026-77423-jline-is-a-java-library-for-handling-console-input-from-3-0-0"},{"cvss":7.5,"slug":"jline3-telnet-server-memory-exhaustion-in-remote-telnet-module-ec821c4d","title":"JLine3 Telnet server memory exhaustion in remote-telnet module","severity":"high","exploited":false,"published_at":"2026-06-18T13:07:25+00:00","url":"https://junglewise.ai/threats/jline3-telnet-server-memory-exhaustion-in-remote-telnet-module-ec821c4d"},{"cvss":7.5,"slug":"jline-jline3-remote-telnet-denial-of-service-via-unbounded-naws-59fc55bd","title":"JLine JLine3 remote-telnet denial of service via unbounded NAWS terminal geometry","severity":"high","exploited":false,"published_at":"2026-06-18T13:07:16+00:00","url":"https://junglewise.ai/threats/jline-jline3-remote-telnet-denial-of-service-via-unbounded-naws-59fc55bd"},{"cve":"CVE-2026-77421","cvss":6.5,"epss":0.0043,"slug":"cve-2026-77421-jline-nano-editor-redos-in-regex-search-mode","title":"JLine is a Java library for handling console input. From 3.0.0 until 3.30.15 and 4.3.1, the JLine built-in nano editor's regex search mode p","severity":"medium","exploited":false,"published_at":"2026-09-23T19:19:15.7+00:00","url":"https://junglewise.ai/threats/cve-2026-77421-jline-nano-editor-redos-in-regex-search-mode"},{"cve":"CVE-2026-77420","cvss":5.5,"epss":0.0012,"slug":"cve-2026-77420-jline-history-ignore-redos-via-unescaped-regex-metacharacters","title":"JLine is a Java library for handling console input. From 3.0.0 until 3.30.15 and 4.3.1, DefaultHistory.matchPatterns(String patterns, String","severity":"medium","exploited":false,"published_at":"2026-09-23T19:19:15.51+00:00","url":"https://junglewise.ai/threats/cve-2026-77420-jline-history-ignore-redos-via-unescaped-regex-metacharacters"}],"generated_at":"2026-09-26T14:07:00.158513+00:00","technologies":[{"name":"JLine","slug":"jline","vulnerabilities":5,"url":"https://junglewise.ai/threats/technologies/jline"}]}