CVE-2023-31606

A Regular Expression Denial of Service (ReDoS) issue was discovered in the sanitize_html function of redcloth gem v4.0.0. This vulnerability allows attackers to cause a Denial of Service (DoS) via supplying a crafted payload.
Configurations

Configuration 1 (hide)

cpe:2.3:a:promptworks:redcloth:*:*:*:*:*:ruby:*:*

History

No history.

Information

Published : 2023-06-06 17:15

Updated : 2024-01-10 14:15


NVD link : CVE-2023-31606

Mitre link : CVE-2023-31606

CVE.ORG link : CVE-2023-31606


JSON object : View

Products Affected

promptworks

  • redcloth
CWE
CWE-1333

Inefficient Regular Expression Complexity