Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:22839
HistoryMar 31, 2020 - 6:36 a.m.

Regular Expression Denial-of-Service (ReDoS)

2020-03-3106:36:51
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4

0.001 Low

EPSS

Percentile

29.7%

bleach is vulnerable to regular expression denial of service (ReDoS). The vulnerability exists when parsing style attributes through sanitize_css.

CPENameOperatorVersion
bleachle3.1.3
bleachle3.1.3