Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-28756
HistoryMar 31, 2023 - 4:15 a.m.

Authentication flaw

2023-03-3104:15:00
PRIOn knowledge base
www.prio-n.com
56
ruby
time component
redos issue
execution time
parsing strings

5.5 Medium

AI Score

Confidence

High

0.003 Low

EPSS

Percentile

69.5%

A ReDoS issue was discovered in the Time component through 0.2.1 in Ruby through 3.2.1. The Time parser mishandles invalid URLs that have specific characters. It causes an increase in execution time for parsing strings to Time objects. The fixed versions are 0.1.1 and 0.2.2.