CWE-1333
High likelihoodInefficient Regular Expression Complexity
The product uses a regular expression with a worst-case computational complexity that is inefficient and possibly exponential.
457 vulnerabilities with CWE-1333
CVE-2023-31606
HIGH
RedCloth 4.0.0-4.3.2 - Regular Expression Denial of Service in sanitize_html
CVSS 7.5
CVE-2023-2132
HIGH
GitLab CE/EE <15.10.8/<15.11.7/<16.0.2 - DoS
CVSS 7.5
CVE-2023-33950
MEDIUM
Liferay Portal/DXP 7.4.3.48-7.4.3.76 - DoS
CVSS 6.5
CVE-2023-32758
HIGH
git-url-parse < 1.2.2 - Regular Expression Denial of Service via URL Parsing
CVSS 7.5
CVE-2023-1894
MEDIUM
Puppet Server 7.9.2 - Regular Expression Denial of Service in Certificate Validation
CVSS 5.3
CVE-2023-30858
MEDIUM
denosaurs emoji 0.1.0-<0.3.0 - Denial of Service via Inefficient Regular Expression in reTrimSpace
CVSS 5.3
CVE-2023-30608
MEDIUM
sqlparse >=0.1.15 <0.4.4 - Denial of Service via Inefficient Regular Expression
CVSS 5.5
CVE-2023-27704
MEDIUM
Everything < 1.4.1.1022 - Regular Expression Denial of Service
CVSS 5.5
CVE-2023-26112
LOW
configobj < 5.0.9 - Regular Expression Denial of Service via Validate Function
CVSS 3.7
CVE-2023-28756
MEDIUM
Ruby Time < 0.2.2 - Inefficient Regular Expression Complexity in Time Parser
CVSS 5.3
CVE-2023-28755
MEDIUM
URI < 0.10.0, 0.10.0-0.10.1, 0.11.0, 0.12.0 - Inefficient Regular Expression Complexity
CVSS 5.3
CVE-2023-26118
MEDIUM
angularjs 1.4.9-1.8.3 - Regular Expression Denial of Service via URL Input Validation
CVSS 5.3
CVE-2023-26117
MEDIUM
angularjs 1.0.0-1.8.2 - Regular Expression Denial of Service via $resource Service
CVSS 5.3
CVE-2023-26116
MEDIUM
angularjs 1.2.21-1.8.2 - Regular Expression Denial of Service via angular.copy()
CVSS 5.3
CVE-2023-26103
MEDIUM
deno < 1.31.0 - Regular Expression Denial of Service via WebSocket Header Parsing
CVSS 5.3
CVE-2023-24807
HIGH
Undici < 5.19.1 - Regular Expression Denial of Service via Header Value Normalization
CVSS 7.5
CVE-2023-22799
HIGH
GlobalID < 1.0.1 - Denial of Service via Inefficient Regular Expression Complexity
CVSS 7.5
CVE-2023-22796
HIGH
Activesupport < 6.1.7.1 - Denial of Service
CVSS 7.5
CVE-2023-22795
HIGH
Rails < 6.1.7.1 and < 7.0.4.1 - Denial of Service via If-None-Match Header Regex
CVSS 7.5
CVE-2023-22792
HIGH
Rails 3.0.0-5.2.8.14 and 6.0.0-6.0.6.0 - Denial of Service via Regular Expression Backtracking in Action Dispatch
CVSS 7.5
CVE-2023-25167
MEDIUM
Discourse < 3.0.1 - Regular Expression Denial of Service via Git URL
CVSS 6.5
CVE-2023-25166
MEDIUM
hapi/formula < 3.0.1 - Denial of Service via Inefficient Regular Expression
CVSS 5.5
CVE-2023-23925
HIGH
switcher_client < 3.1.4 - Regular Expression Denial of Service via Strategy Match Operation
CVSS 8.6
CVE-2023-23621
HIGH
Discourse < 3.0.1 - Regular Expression Denial of Service via User Agent
CVSS 8.6
CVE-2023-24038
HIGH
HTML-StripScripts < 1.06 - Inefficient Regular Expression Complexity in _hss_attval_style
CVSS 7.5
Details
Vulnerabilities
457
Exploit Likelihood
High