Vulnerabilities
3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2021-29060 | A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in Color-String version 1.5.5 and below which occurs when the application is provide A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in Color-String version 1.5.5 and below which occurs when the application is provided and checks a crafted invalid HWB string. NVD description · AI analysis pending | 5.3 | 3% | PoC |
| — | |
| CVE-2017-16116 | The string module is a module that provides extra string operations. The string module is a module that provides extra string operations. The string module is vulnerable to regular expression denial of service when specifically crafted untrusted user input is passed into the underscore or unescapeHTML methods. NVD description · AI analysis pending | 7.5 | 2% | PoC |
| — | |
| CVE-2018-11097 | An issue was discovered in cloudwu/cstring through 2016-11-09. An issue was discovered in cloudwu/cstring through 2016-11-09. There is a memory leak vulnerability that could lead to a program crash. NVD description · AI analysis pending | 7.5 | 1% |
| — |