CVE-2017-18077
27.01.2018, 12:29
index.js in brace-expansion before 1.1.7 is vulnerable to Regular Expression Denial of Service (ReDoS) attacks, as demonstrated by an expand argument containing many comma characters.Enginsight
Vendor | Product | Version |
---|---|---|
brace_expansion_project | brace_expansion | 𝑥 < 1.1.7 |
𝑥
= Vulnerable software versions

Debian Releases
Common Weakness Enumeration
References