Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fw2v-v7vp-pccq

Опубликовано: 26 окт. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 8.7

Описание

Validate.js provides a declarative way of validating javascript objects. All versions as of 30 November 2020 contain one or more regular expressions that are vulnerable to Regular Expression Denial of Service (ReDoS). As of time of publication, it is unknown if any patches are available.

Validate.js provides a declarative way of validating javascript objects. All versions as of 30 November 2020 contain one or more regular expressions that are vulnerable to Regular Expression Denial of Service (ReDoS). As of time of publication, it is unknown if any patches are available.

EPSS

Процентиль: 40%
0.00185
Низкий

8.7 High

CVSS4

Дефекты

CWE-1333

Связанные уязвимости

nvd
больше 1 года назад

Validate.js provides a declarative way of validating javascript objects. All versions as of 30 November 2020 contain one or more regular expressions that are vulnerable to Regular Expression Denial of Service (ReDoS). As of time of publication, it is unknown if any patches are available.

EPSS

Процентиль: 40%
0.00185
Низкий

8.7 High

CVSS4

Дефекты

CWE-1333