Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 5

Количество 5

ubuntu логотип

CVE-2026-79770

23 дня назад

Nokogiri versions before 1.19.3 contain regular expression denial of service vulnerabilities in the CSS selector tokenizer affecting string-literal and identifier tokenization. Attackers can inject adversarial CSS selectors into methods like Node#css, Node#at_css, and Searchable#search to cause exponential regex backtracking and denial of service.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-79770

23 дня назад

Nokogiri versions before 1.19.3 contain regular expression denial of service vulnerabilities in the CSS selector tokenizer affecting string-literal and identifier tokenization. Attackers can inject adversarial CSS selectors into methods like Node#css, Node#at_css, and Searchable#search to cause exponential regex backtracking and denial of service.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-79770

23 дня назад

Nokogiri versions before 1.19.3 contain regular expression denial of service vulnerabilities in the CSS selector tokenizer affecting string-literal and identifier tokenization. Attackers can inject adversarial CSS selectors into methods like Node#css, Node#at_css, and Searchable#search to cause exponential regex backtracking and denial of service.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-79770

23 дня назад

Nokogiri versions before 1.19.3 contain regular expression denial of s ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-c4rq-3m3g-8wgx

4 месяца назад

Nokogiri CSS selector tokenizer has regular expression backtracking

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-79770

Nokogiri versions before 1.19.3 contain regular expression denial of service vulnerabilities in the CSS selector tokenizer affecting string-literal and identifier tokenization. Attackers can inject adversarial CSS selectors into methods like Node#css, Node#at_css, and Searchable#search to cause exponential regex backtracking and denial of service.

CVSS3: 7.5
0%
Низкий
23 дня назад
redhat логотип
CVE-2026-79770

Nokogiri versions before 1.19.3 contain regular expression denial of service vulnerabilities in the CSS selector tokenizer affecting string-literal and identifier tokenization. Attackers can inject adversarial CSS selectors into methods like Node#css, Node#at_css, and Searchable#search to cause exponential regex backtracking and denial of service.

CVSS3: 7.5
0%
Низкий
23 дня назад
nvd логотип
CVE-2026-79770

Nokogiri versions before 1.19.3 contain regular expression denial of service vulnerabilities in the CSS selector tokenizer affecting string-literal and identifier tokenization. Attackers can inject adversarial CSS selectors into methods like Node#css, Node#at_css, and Searchable#search to cause exponential regex backtracking and denial of service.

CVSS3: 7.5
0%
Низкий
23 дня назад
debian логотип
CVE-2026-79770

Nokogiri versions before 1.19.3 contain regular expression denial of s ...

CVSS3: 7.5
0%
Низкий
23 дня назад
github логотип
GHSA-c4rq-3m3g-8wgx

Nokogiri CSS selector tokenizer has regular expression backtracking

CVSS3: 7.5
0%
Низкий
4 месяца назад

Уязвимостей на страницу