Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7384
HistoryAug 30, 2018 - 6:08 a.m.

Regular Expression Denial Of Service (ReDoS)

2018-08-3006:08:10
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

EPSS

0.004

Percentile

73.8%

lodash is vulnerable to Regular Expression Denial of Service (ReDoS) attacks. The library uses a regular expression that does not properly handle processing a large amount of characters, allowing a malicious user to cause a ReDoS.