Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-32821

Опубликовано: 03 янв. 2023
Источник: nvd
CVSS3: 6.2
CVSS3: 7.5
EPSS Низкий

Описание

MooTools is a collection of JavaScript utilities for JavaScript developers. All known versions include a CSS selector parser that is vulnerable to Regular Expression Denial of Service (ReDoS). An attack requires that an attacker can inject a string into a CSS selector at runtime, which is quite common with e.g. jQuery CSS selectors. No patches are available for this issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:mootools:mootools:*:*:*:*:*:*:*:*
Версия до 1.6.0 (включая)

EPSS

Процентиль: 42%
0.00196
Низкий

6.2 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-400
CWE-1333

Связанные уязвимости

CVSS3: 6.2
ubuntu
около 3 лет назад

MooTools is a collection of JavaScript utilities for JavaScript developers. All known versions include a CSS selector parser that is vulnerable to Regular Expression Denial of Service (ReDoS). An attack requires that an attacker can inject a string into a CSS selector at runtime, which is quite common with e.g. jQuery CSS selectors. No patches are available for this issue.

CVSS3: 6.2
debian
около 3 лет назад

MooTools is a collection of JavaScript utilities for JavaScript develo ...

CVSS3: 7.5
github
около 3 лет назад

MooTools Regular Expression Denial of Service

EPSS

Процентиль: 42%
0.00196
Низкий

6.2 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-400
CWE-1333