Lucene search

K
osvGoogleOSV:GHSA-9PQ7-RCXV-47VQ
HistoryJul 14, 2021 - 7:10 p.m.

Incorrect Regular Expression in RestSharp

2021-07-1419:10:01
Google
osv.dev
50
restsharp
vulnerability
redos
date conversion
software
remote server
denial of service

EPSS

0.001

Percentile

48.0%

RestSharp < 106.11.8-alpha.0.13 uses a regular expression which is vulnerable to Regular Expression Denial of Service (ReDoS) when converting strings into DateTimes. If a server responds with a malicious string, the client using RestSharp will be stuck processing it for an exceedingly long time. Thus the remote server can trigger Denial of Service.

EPSS

0.001

Percentile

48.0%

Related for OSV:GHSA-9PQ7-RCXV-47VQ