Falhas do tipo CWE-1333

337 resultados
CVE-2023-34104HIGHRegex Injection via Doctype EntitiesEPSS 1.1%CVE-2023-24038HIGHThe HTML-StripScripts module through 1.06 for Perl allows _hss_attval_style ReDoS because of catastrophic backtracking for HTML content withEPSS 1.1%CVE-2023-43646HIGHInefficient Regular Expression Complexity in get-func-nameEPSS 1.1%CVE-2022-2596MEDIUMInefficient Regular Expression Complexity in node-fetch/node-fetchEPSS 1.1%CVE-2022-36064MEDIUMShescape Inefficient Regular Expression Complexity vulnerabilityEPSS 1.1%CVE-2019-25102MEDIUMsimple-markdown simple-markdown.js redosEPSS 1.1%CVE-2022-37620HIGHA Regular Expression Denial of Service (ReDoS) flaw was found in kangax html-minifier 4.0.0 because of the reCustomIgnore regular expressionEPSS 1.1%CVE-2024-47887MEDIUMAction Controller has possible ReDoS vulnerability in HTTP Token authenticationEPSS 1.0%CVE-2023-32758HIGHgiturlparse (aka git-url-parse) through 1.2.2, as used in Semgrep 1.5.2 through 1.24.1, is vulnerable to ReDoS (Regular Expression Denial ofEPSS 1.0%CVE-2023-29486CRITICALAn issue was discovered in Heimdal Thor agent versions 3.4.2 and before 3.7.0 on Windows, allows attackers to bypass USB access restrictionsEPSS 1.0%CVE-2021-43308MEDIUMExponential ReDoS in markdown-link-extractorEPSS 1.0%CVE-2024-10624HIGHRegular Expression Denial of Service (ReDoS) in gradio-app/gradioEPSS 1.0%CVE-2021-3801HIGHInefficient Regular Expression Complexity in prismjs/prismEPSS 1.0%CVE-2023-45806MEDIUMDiscourse vulnerable to DoS via Regexp Injection in Full NameEPSS 1.0%CVE-2024-47888MEDIUMAction Text has possible ReDoS vulnerability in plain_text_for_blockquote_nodeEPSS 1.0%CVE-2022-37259HIGHA Regular Expression Denial of Service (ReDoS) flaw was found in stealjs steal 2.2.4 via the string variable in babel.js.EPSS 1.0%CVE-2023-6159MEDIUMInefficient Regular Expression Complexity in GitLabEPSS 1.0%CVE-2017-20162MEDIUMvercel ms index.js parse redosEPSS 1.0%CVE-2023-30608MEDIUMParser contains an inefficient regular expression in sqlparseEPSS 1.0%CVE-2024-21503MEDIUMVersions of the package black before 24.3.0 are vulnerable to Regular Expression Denial of Service (ReDoS) via the lines_with_leading_tabs_eEPSS 1.0%