Vulnerabilities/

@babel/core: Arbitrary File Read via sourceMappingURL Comment

Severity:
Low

Description

Using @babel/core to compile maliciously crafted code can allow ab attacker to read any source map from the system that is running Babel, if these conditions are all true:

**Us

Recommendation

Update the @babel/core package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
@babel/core
Anything's wrong? Let us know Last updated on July 15, 2026