Inefficient Regular Expression Complexity
CVE-2018-25049
Summary
A vulnerability was found in email-existence prior to 0.1.6. It has been rated as problematic. Affected by this issue is some unknown functionality of the file "index.js". The manipulation leads to inefficient regular expression complexity. It is recommended to apply a patch to fix this issue. VDB-216854 is the identifier assigned to this vulnerability.
- LOW
- NETWORK
- NONE
- UNCHANGED
- NONE
- NONE
- NONE
- HIGH
CWE-1333 - Inefficient Regular Expression Complexity
The product uses a regular expression with an inefficient, possibly exponential worst-case computational complexity that consumes excessive CPU cycles.
References
Advisory Timeline
- Published