Lucene search

K
osvGoogleOSV:CVE-2016-1000232
HistorySep 05, 2018 - 5:29 p.m.

CVE-2016-1000232

2018-09-0517:29:00
Google
osv.dev
11

AI Score

6.7

Confidence

Low

EPSS

0.006

Percentile

79.2%

NodeJS Tough-Cookie version 2.2.2 contains a Regular Expression Parsing vulnerability in HTTP request Cookie Header parsing that can result in Denial of Service. This attack appear to be exploitable via Custom HTTP header passed by client. This vulnerability appears to have been fixed in 2.3.0.

AI Score

6.7

Confidence

Low

EPSS

0.006

Percentile

79.2%