Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-28755
HistoryMar 31, 2023 - 4:15 a.m.

Authentication flaw

2023-03-3104:15:00
PRIOn knowledge base
www.prio-n.com
11
authentication
redos
uri parsing
security flaw
execution time

5.5 Medium

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

61.0%

A ReDoS issue was discovered in the URI component through 0.12.0 in Ruby through 3.2.1. The URI parser mishandles invalid URLs that have specific characters. It causes an increase in execution time for parsing strings to URI objects. The fixed versions are 0.12.1, 0.11.1, 0.10.2 and 0.10.0.1.