github.com
https://github.com/jgraph/drawio/commit/064729fec4262f9373d9fdcafda0be47cd18dd50 CVE-2023-3398
HIGH
Denial of Service in jgraph/drawio
Record summary
CVE-2023-3398 has a selected CVSS score of 7.5 (high).
Description
Denial of Service in GitHub repository jgraph/drawio prior to 18.1.3.
Description source: CVE List
Exploitation context
CISA SSVC decision
ExploitationPoC
AutomatableYes
Technical impactPartial
CISA Coordinator · SSVC 2.0.3 · Evaluated Dec 3, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
jgraph/drawioBrowse jgraph / jgraph/drawio | CVE List | Before 18.1.3 | affected |
References
3huntr.dev
https://huntr.dev/bounties/aa087215-80e1-433d-b870-650705630e69 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2023-3398