CVE-2018-25049
Summary
| CVE | CVE-2018-25049 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2022-12-27 09:15:00 UTC |
| Updated | 2023-11-07 02:56:00 UTC |
| Description | A vulnerability was found in email-existence. It has been rated as problematic. Affected by this issue is some unknown functionality of the file index.js. The manipulation leads to inefficient regular expression complexity. The name of the patch is 0029ba71b6ad0d8ec0baa2ecc6256d038bdd9b56. It is recommended to apply a patch to fix this issue. VDB-216854 is the identifier assigned to this vulnerability. |
Risk And Classification
Problem Types: CWE-1333
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Email-existence Project | Email-existence | - | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| security: address REDOS by rejecting long emails · nmanousos/email-existence@0029ba7 · GitHub | MISC | github.com | |
| security: address REDOS by rejecting long emails by davisjam · Pull Request #37 · nmanousos/email-existence · GitHub | MISC | github.com | |
| CVE-2018-25049 | email-existence index.js redos (ID 37) | MISC | vuldb.com | |
| CVE-2018-25049 | email-existence index.js redos (ID 37) | MISC | vuldb.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.