Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:5173
HistorySep 26, 2017 - 9:49 a.m.

Regular Expression Denial Of Service (ReDoS)

2017-09-2609:49:25
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
10

0.001 Low

EPSS

Percentile

47.9%

mime is vulnerable to regular expression denial of service (ReDoS) attacks. The library does not restrict the type of characters that it takes in, causing the application to take a long time to process. A malicious user can use this behaviour to cause a ReDoS.