Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-26116
HistoryMar 30, 2023 - 5:15 a.m.

Design/Logic Flaw

2023-03-3005:15:00
PRIOn knowledge base
www.prio-n.com
45
version 1.2.21
angular package
regular expression denial of service
redos
logic flaw
nvd

AI Score

5.2

Confidence

High

EPSS

0.002

Percentile

57.9%

Versions of the package angular from 1.2.21 are vulnerable to Regular Expression Denial of Service (ReDoS) via the angular.copy() utility function due to the usage of an insecure regular expression. Exploiting this vulnerability is possible by a large carefully-crafted input, which can result in catastrophic backtracking.

AI Score

5.2

Confidence

High

EPSS

0.002

Percentile

57.9%