Lucene search

K
osvGoogleOSV:CVE-2019-16215
HistorySep 18, 2019 - 12:15 p.m.

CVE-2019-16215

2019-09-1812:15:10
Google
osv.dev
5

AI Score

6.8

Confidence

High

EPSS

0.001

Percentile

35.0%

The Markdown parser in Zulip server before 2.0.5 used a regular expression vulnerable to exponential backtracking. A user who is logged into the server could send a crafted message causing the server to spend an effectively arbitrary amount of CPU time and stall the processing of future messages.

AI Score

6.8

Confidence

High

EPSS

0.001

Percentile

35.0%

Related for OSV:CVE-2019-16215