Critical
Low
Medium

CVE-2023-36617 — Ruby URI ReDoS

Overview

Critical
Low
Medium
No items found.

Package: uri (Ruby standard library)

Impact: Regular expression denial of service

Fix: Update Ruby to v3.0.6+, v3.1.4+, v3.2.2+

Year: 2023

CVSS:

Severity:

Affected Components

Location

* lib/uri/rfc2396_parser.rb

* def initialize_regexp

* lib/uri/rfc3986_parser.rb

* def initialize

Stop the waste.
Protect your environment with Kodem.

Get a personalized demo
Get a personalized demo