Security Advisory

CVE-2017-18077

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2018-01-27 12:00:00
Last updated 2024-09-17 00:56:19
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

index.js in brace-expansion before 1.1.7 is vulnerable to Regular Expression Denial of Service (ReDoS) attacks, as demonstrated by an expand argument containing many comma characters.