← back
CVE-2020-26305

GHSL-2020-291: Regular Expression Denial of Service (ReDoS) in CommonRegexJS

CVSS 8.7 HIGHEPSS 0.5%CWE-1333
CommonRegexJS is a CommonRegex port for JavaScript. All available versions contain one or more regular expressions that are vulnerable to Regular Expression Denial of Service (ReDoS). As of time of publication, no known patches are available.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/U:Green

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →