CVE-2021-43309

5.9MEDIUM

An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the uri-template-lite npm package, when an attacker is able to supply arbitrary input to the "URI.expand" method

Published: 8/24/2022Updated: 11/21/2024

Description

An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the uri-template-lite npm package, when an attacker is able to supply arbitrary input to the "URI.expand" method

AI AnalysisPowered by AI

Affected Products

litejsuri-template-lite

References