CVE-2017-18077
27.01.2018, 12:29
index.js in brace-expansion before 1.1.7 is vulnerable to Regular Expression Denial of Service (ReDoS) attacks, as demonstrated by an expand argument containing many comma characters.Enginsight
| Vendor | Product | Version |
|---|---|---|
| brace_expansion_project | brace_expansion | 𝑥 < 1.1.7 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration
References