ZeroHour

CVE-2018-1109

PoC
CVSS 3.1
5.3 medium
EPSS
1%p71
Published
()
Modified
Description

A vulnerability was found in Braces versions 2.2.0 and above, prior to 2.3.1. Affected versions of this package are vulnerable to Regular Expression Denial of Service (ReDoS) attacks.

Vendors
braces project
Products
braces
Weakness
CWE-185, CWE-400
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

In the news

No ingested article mentions this CVE yet.