Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:36972
HistorySep 08, 2022 - 4:54 a.m.

Denial Of Service (DoS)

2022-09-0804:54:17
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14
jose
denial of service
decrypt algorithm
computational expense
malicious input
vulnerability

EPSS

0.001

Percentile

41.9%

jose is vulnerable to denial of service. The vulnerability exists in the multiple functions in decrypt.ts due to not limiting the computational expense of default PBES2 algorithm, allowing an attacker to crash the application by providing malicious input.

EPSS

0.001

Percentile

41.9%