Skip to content

[VULN] Security Alert for decamelize #988

@srm-local-dev-test

Description

@srm-local-dev-test

Alert IDs:

  • cdbd10a1-dd48-4722-88d9-70f565d4fbd2

Vulnerabilities in decamelize

Release: 21st May Release

Total Vulnerabilities: 1


1. CVE-2017-16023

Severity: HIGH (Score: 7.5)

Description:
Decamelize is used to convert a dash/dot/underscore/space separated string to camelCase. Decamelize 1.1.0 through 1.1.1 uses regular expressions to evaluate a string and takes unescaped separator values, which can be used to create a denial of service attack.

Reference: https://nvd.nist.gov/vuln/detail/CVE-2017-16023

Alert ID: cdbd10a1-dd48-4722-88d9-70f565d4fbd2


Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions