CVE-2023-25166
08.02.2023, 20:15
formula is a math and string formula parser. In versions prior to 3.0.1 crafted user-provided strings to formula's parser might lead to polynomial execution time and a denial of service. Users should upgrade to 3.0.1+. There are no known workarounds for this vulnerability.Enginsight
Vendor | Product | Version |
---|---|---|
hapi | formula | 𝑥 < 3.0.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References