Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Brace Expansion Project Subscribe
Filtered by product Brace Expansion
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2017-18077 1 Brace Expansion Project 1 Brace Expansion 2018-02-15 5.0 MEDIUM 7.5 HIGH
index.js in brace-expansion before 1.1.7 is vulnerable to Regular Expression Denial of Service (ReDoS) attacks, as demonstrated by an expand argument containing many comma characters.