[MAVEN:GHSA-38J3-6FM8-PFGC] Regular expression denial of service in Delight Nashorn Sandbox

Severity High
Affected Packages 1
Fixed Packages 1
CVEs 1

An issue was discovered in Delight Nashorn Sandbox. There is an ReDoS vulnerability that can be exploited to launching a denial of service (DoS) attack.

Package Affected Version
pkg:maven/org.javadelight/delight-nashorn-sandbox < 0.3.1
ID
MAVEN:GHSA-38J3-6FM8-PFGC
Severity
high
URL
https://github.com/advisories/GHSA-38j3-6fm8-pfgc
Published
2022-06-15T00:00:24
(2 years ago)
Modified
2024-01-08T22:52:01
(8 months ago)
Rights
Maven Security Team
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:maven/org.javadelight/delight-nashorn-sandbox org.javadelight delight-nashorn-sandbox < 0.3.1
Fixed pkg:maven/org.javadelight/delight-nashorn-sandbox org.javadelight delight-nashorn-sandbox = 0.3.1
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...