
CVE-2026-44777 jq is a command-line JSON processor. In 1.8.2rc1 and earlier, the ordinary module loader recurses without cycle detection when two otherwise valid modules include eac… https://www.cve.org/CVERecord?id=CVE-2026-44777
Post summary
The CVE details jq’s module loader recursion flaw in older releases, with technical specifics provided but no PoC, exploit, patch, or active exploitation mentioned.
