CVE-2022-25901

5.3MEDIUM

Versions of the package cookiejar before 2.1.4 are vulnerable to Regular Expression Denial of Service (ReDoS) via the Cookie.parse function, which uses an insecure regular expression.

Опубликовано: 1/18/2023Обновлено: 2/13/2025

Описание

Versions of the package cookiejar before 2.1.4 are vulnerable to Regular Expression Denial of Service (ReDoS) via the Cookie.parse function, which uses an insecure regular expression.

ИИ-АнализНа базе ИИ

Затронутые продукты

cookiejar_projectcookiejar

Ссылки