Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37574
HistoryOct 16, 2022 - 9:39 p.m.

Regular Expression Denial Of Service (ReDoS)

2022-10-1621:39:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
27
loader-utils vulnerability
redos
remote attacker
denial of service

0.007 Low

EPSS

Percentile

80.3%

loader-utils is vulnerable to Regular Expression Denial Of Service (ReDoS). The vulnerability is due to insecure regular expression in the url variable of the interpolateName function in interpolateName.js. A remote attacker can cause denial of service via malicious regex.