Описание
A vulnerability was found in Prestaul skeemas and classified as problematic. This issue affects some unknown processing of the file validators/base.js. The manipulation of the argument uri leads to inefficient regular expression complexity. The patch is named 65e94eda62dc8dc148ab3e59aa2ccc086ac448fd. It is recommended to apply a patch to fix this issue. The associated identifier of this vulnerability is VDB-218003.
Ссылки
- Patch
- Third Party Advisory
- Third Party Advisory
- Patch
- Third Party Advisory
- Third Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 2018-02-22 (исключая)
cpe:2.3:a:skeemas_project:skeemas:*:*:*:*:*:*:*:*
EPSS
Процентиль: 63%
0.00453
Низкий
3.5 Low
CVSS3
7.5 High
CVSS3
2.3 Low
CVSS2
Дефекты
CWE-1333
CWE-1333
Связанные уязвимости
CVSS3: 7.5
github
около 3 лет назад
skeemas Inefficient Regular Expression Complexity vulnerability
EPSS
Процентиль: 63%
0.00453
Низкий
3.5 Low
CVSS3
7.5 High
CVSS3
2.3 Low
CVSS2
Дефекты
CWE-1333
CWE-1333