CVE-2021-43309

5.9MEDIUM

An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the uri-template-lite npm package, when an attacker is able to supply arbitrary input to the "URI.expand" method

发布于: 8/24/2022更新于: 11/21/2024

描述

An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the uri-template-lite npm package, when an attacker is able to supply arbitrary input to the "URI.expand" method

AI分析AI驱动

受影响产品

litejsuri-template-lite

参考资料