Description
In mistune through 2.0.2, support of inline markup is implemented by using regular expressions that can involve a high amount of backtracking on certain edge cases. This behavior is commonly named catastrophic backtracking.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-0155 | In mistune through 2.0.2, support of inline markup is implemented by using regular expressions that can involve a high amount of backtracking on certain edge cases. This behavior is commonly named catastrophic backtracking. |
Github GHSA |
GHSA-fw3v-x4f2-v673 | Mistune vulnerable to catastrophic backtracking |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T09:22:10.438Z
Reserved: 2022-06-28T00:00:00.000Z
Link: CVE-2022-34749
No data.
Status : Modified
Published: 2022-07-25T23:15:07.837
Modified: 2024-11-21T07:10:06.857
Link: CVE-2022-34749
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA