ZeroHour

CVE-2017-20190

CVSS
EPSS
<1%p18
Published
()
Modified
Description

Some Microsoft technologies as used in Windows 8 through 11 allow a temporary client-side performance degradation during processing of multiple Unicode combining characters, aka a "Zalgo text" attack. NOTE: third parties dispute whether the computational cost of interpreting Unicode data should be considered a vulnerability.

Weakness
CWE-176

In the news

No ingested article mentions this CVE yet.