Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 11

Количество 11

ubuntu логотип

CVE-2024-4068

около 2 лет назад

The NPM package `braces`, versions prior to 3.0.3, fails to limit the number of characters it can handle, which could lead to Memory Exhaustion. In `lib/parse.js,` if a malicious user sends "imbalanced braces" as input, the parsing will enter a loop, which will cause the program to start allocating heap memory without freeing it at any moment of the loop. Eventually, the JavaScript heap limit is reached, and the program will crash.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2024-4068

больше 2 лет назад

The NPM package `braces`, versions prior to 3.0.3, fails to limit the number of characters it can handle, which could lead to Memory Exhaustion. In `lib/parse.js,` if a malicious user sends "imbalanced braces" as input, the parsing will enter a loop, which will cause the program to start allocating heap memory without freeing it at any moment of the loop. Eventually, the JavaScript heap limit is reached, and the program will crash.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2024-4068

около 2 лет назад

The NPM package `braces`, versions prior to 3.0.3, fails to limit the number of characters it can handle, which could lead to Memory Exhaustion. In `lib/parse.js,` if a malicious user sends "imbalanced braces" as input, the parsing will enter a loop, which will cause the program to start allocating heap memory without freeing it at any moment of the loop. Eventually, the JavaScript heap limit is reached, and the program will crash.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2024-4068

около 2 лет назад

Memory Exhaustion in braces

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2024-4068

около 2 лет назад

The NPM package `braces`, versions prior to 3.0.3, fails to limit the ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-grv7-fg5c-xmjg

около 2 лет назад

Uncontrolled resource consumption in braces

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2024-09427

больше 2 лет назад

Уязвимость библиотеки braces, связанная с неконтролируемым потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:1326-1

больше 1 года назад

Security update for pgadmin4

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2025:01326-1

12 месяцев назад

Security update for pgadmin4

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:3771-1

почти 2 года назад

Security update for pgadmin4

EPSS: Низкий
redos логотип

ROS-20241029-08

почти 2 года назад

Множественные уязвимости opensearch

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2024-4068

The NPM package `braces`, versions prior to 3.0.3, fails to limit the number of characters it can handle, which could lead to Memory Exhaustion. In `lib/parse.js,` if a malicious user sends "imbalanced braces" as input, the parsing will enter a loop, which will cause the program to start allocating heap memory without freeing it at any moment of the loop. Eventually, the JavaScript heap limit is reached, and the program will crash.

CVSS3: 7.5
1%
Низкий
около 2 лет назад
redhat логотип
CVE-2024-4068

The NPM package `braces`, versions prior to 3.0.3, fails to limit the number of characters it can handle, which could lead to Memory Exhaustion. In `lib/parse.js,` if a malicious user sends "imbalanced braces" as input, the parsing will enter a loop, which will cause the program to start allocating heap memory without freeing it at any moment of the loop. Eventually, the JavaScript heap limit is reached, and the program will crash.

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
nvd логотип
CVE-2024-4068

The NPM package `braces`, versions prior to 3.0.3, fails to limit the number of characters it can handle, which could lead to Memory Exhaustion. In `lib/parse.js,` if a malicious user sends "imbalanced braces" as input, the parsing will enter a loop, which will cause the program to start allocating heap memory without freeing it at any moment of the loop. Eventually, the JavaScript heap limit is reached, and the program will crash.

CVSS3: 7.5
1%
Низкий
около 2 лет назад
msrc логотип
CVE-2024-4068

Memory Exhaustion in braces

CVSS3: 7.5
1%
Низкий
около 2 лет назад
debian логотип
CVE-2024-4068

The NPM package `braces`, versions prior to 3.0.3, fails to limit the ...

CVSS3: 7.5
1%
Низкий
около 2 лет назад
github логотип
GHSA-grv7-fg5c-xmjg

Uncontrolled resource consumption in braces

CVSS3: 7.5
1%
Низкий
около 2 лет назад
fstec логотип
BDU:2024-09427

Уязвимость библиотеки braces, связанная с неконтролируемым потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2025:1326-1

Security update for pgadmin4

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2025:01326-1

Security update for pgadmin4

12 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:3771-1

Security update for pgadmin4

почти 2 года назад
redos логотип
ROS-20241029-08

Множественные уязвимости opensearch

CVSS3: 7.5
почти 2 года назад

Уязвимостей на страницу

exploitDog - Комплексное решение для обнаружения, оценки и устранения уязвимостей.