Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2022-25883

Опубликовано: 26 июн. 2023
Источник: msrc
CVSS3: 7.5
EPSS Низкий

Описание

Versions of the package semver before 7.5.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via the function new Range when untrusted user data is provided as a range.

EPSS

Процентиль: 55%
0.00321
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 2 лет назад

Versions of the package semver before 7.5.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via the function new Range, when untrusted user data is provided as a range.

CVSS3: 7.5
redhat
больше 2 лет назад

Versions of the package semver before 7.5.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via the function new Range, when untrusted user data is provided as a range.

CVSS3: 5.3
nvd
больше 2 лет назад

Versions of the package semver before 7.5.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via the function new Range, when untrusted user data is provided as a range.

CVSS3: 5.3
debian
больше 2 лет назад

Versions of the package semver before 7.5.2 are vulnerable to Regular ...

CVSS3: 7.5
github
больше 2 лет назад

semver vulnerable to Regular Expression Denial of Service

EPSS

Процентиль: 55%
0.00321
Низкий

7.5 High

CVSS3