CVE-2023-33289

7.5HIGH

The urlnorm crate through 0.1.4 for Rust allows Regular Expression Denial of Service (ReDos) via a crafted URL to lib.rs. NOTE: the Supplier disputes this, taking the position that "Slow printing of U

Veröffentlicht: 6/21/2023Aktualisiert: 3/8/2025

Beschreibung

The urlnorm crate through 0.1.4 for Rust allows Regular Expression Denial of Service (ReDos) via a crafted URL to lib.rs. NOTE: the Supplier disputes this, taking the position that "Slow printing of URLs is not a CVE."

KI-AnalyseKI-gestützt

Betroffene Produkte

urlnorm_projecturlnorm

Referenzen