An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the devcert npm package, when an attacker is able to supply arbitrary input to the certificateFor method
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: JFROG
Published: 2022-06-01T16:47:58.826173Z
Updated: 2024-09-16T23:11:15.683Z
Reserved: 2022-05-28T00:00:00
Link: CVE-2022-1929
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-06-02T14:15:33.973
Modified: 2024-11-21T06:41:46.420
Link: CVE-2022-1929
Redhat
No data.