Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:32126
HistorySep 16, 2021 - 4:00 a.m.

Regular Expression Denial Of Service (ReDoS)

2021-09-1604:00:40
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7
regular expression denial of service
semver-regex
vulnerability
crash
application
malicious string

EPSS

0.001

Percentile

45.7%

semver-regex is vulnerable to regular expression denial of service. An attacker is able to crash the application by submitting a malicious string to the function semverRegex.

EPSS

0.001

Percentile

45.7%