mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-06 18:52:12 +00:00
27 lines
1.1 KiB
Markdown
27 lines
1.1 KiB
Markdown
![]() |
### [CVE-2022-25927](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-25927)
|
||
|

|
||
|

|
||
|
&color=brighgreen)
|
||
|
|
||
|
### Description
|
||
|
|
||
|
Versions of the package ua-parser-js from 0.7.30 and before 0.7.33, from 0.8.1 and before 1.0.33 are vulnerable to Regular Expression Denial of Service (ReDoS) via the trim() function.
|
||
|
|
||
|
### POC
|
||
|
|
||
|
#### Reference
|
||
|
- https://security.snyk.io/vuln/SNYK-JS-UAPARSERJS-3244450
|
||
|
|
||
|
#### Github
|
||
|
- https://github.com/ARPSyndicate/cvemon
|
||
|
- https://github.com/OneIdentity/IdentityManager.Imx
|
||
|
- https://github.com/k0mi-tg/CVE-POC
|
||
|
- https://github.com/manas3c/CVE-POC
|
||
|
- https://github.com/masahiro331/cve-2022-25927
|
||
|
- https://github.com/nomi-sec/PoC-in-GitHub
|
||
|
- https://github.com/seal-community/patches
|
||
|
- https://github.com/trong0dn/eth-todo-list
|
||
|
- https://github.com/whoforget/CVE-POC
|
||
|
- https://github.com/youwizard/CVE-POC
|
||
|
|