Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2gwh-2hvc-7qgh

Опубликовано: 09 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 5.3
CVSS3: 4.3

Описание

A vulnerability classified as problematic has been found in actions toolkit 0.5.0. This affects the function globEscape of the file toolkit/packages/glob/src/internal-pattern.ts of the component glob. The manipulation leads to inefficient regular expression complexity. It is possible to initiate the attack remotely.

A vulnerability classified as problematic has been found in actions toolkit 0.5.0. This affects the function globEscape of the file toolkit/packages/glob/src/internal-pattern.ts of the component glob. The manipulation leads to inefficient regular expression complexity. It is possible to initiate the attack remotely.

EPSS

Процентиль: 12%
0.00041
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-400

Связанные уязвимости

CVSS3: 4.3
nvd
11 дней назад

A vulnerability classified as problematic has been found in actions toolkit 0.5.0. This affects the function globEscape of the file toolkit/packages/glob/src/internal-pattern.ts of the component glob. The manipulation leads to inefficient regular expression complexity. It is possible to initiate the attack remotely.

EPSS

Процентиль: 12%
0.00041
Низкий

5.3 Medium

CVSS4

4.3 Medium

CVSS3

Дефекты

CWE-400