Description
Versions of the package ua-parser-js from 0.7.30 and before 0.7.33, from 0.8.1 and before 1.0.33 are vulnerable to Regular Expression Denial of Service (ReDoS) via the trim() function.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0457 | ReDoS Vulnerability in ua-parser-js version |
Github GHSA |
GHSA-fhg7-m89q-25r3 | ReDoS Vulnerability in ua-parser-js version |
References
History
Tue, 01 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: snyk
Published:
Updated: 2025-04-01T18:28:37.897Z
Reserved: 2022-02-24T11:58:25.175Z
Link: CVE-2022-25927
Updated: 2024-08-03T04:49:44.149Z
Status : Modified
Published: 2023-01-26T21:15:32.107
Modified: 2025-04-01T19:15:41.557
Link: CVE-2022-25927
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA