Описание
The WP-GeSHi-Highlight — rock-solid syntax highlighting for 259 languages WordPress plugin through 1.4.3 processes user-supplied input as a regular expression via the wp_geshi_filter_replace_code() function, which could lead to Regular Expression Denial of Service (ReDoS) issue
Ссылки
- ExploitThird Party Advisory
- ExploitThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 1.4.3 (включая)
cpe:2.3:a:jgehrcke:wp-geshi-highlight:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 54%
0.00308
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-1333
Связанные уязвимости
CVSS3: 6.5
github
10 месяцев назад
The WP-GeSHi-Highlight — rock-solid syntax highlighting for 259 languages WordPress plugin through 1.4.3 processes user-supplied input as a regular expression via the wp_geshi_filter_replace_code() function, which could lead to Regular Expression Denial of Service (ReDoS) issue
EPSS
Процентиль: 54%
0.00308
Низкий
6.5 Medium
CVSS3
Дефекты
CWE-1333