CVE-2023-47163
13.11.2023, 03:15
Remarshal prior to v0.17.1 expands YAML alias nodes unlimitedly, hence Remarshal is vulnerable to Billion Laughs Attack. Processing untrusted YAML files may cause a denial-of-service (DoS) condition.Enginsight
Vendor | Product | Version |
---|---|---|
remarshal_project | remarshal | 𝑥 < 0.17.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References