CWE-1333 · 419 kayıt
Inefficient Regular Expression Complexity
Bu sınıftaki CVE’ler
419 kayıt
| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
43Planlayın | CVE-2023-3364İstismar yok | Inefficient Regular Expression Complexity in GitLabgitlab · gitlab · CWE-1333 | Yüksek7,5 | — | %44,5 | 1 Ağu 2023 |
42Planlayın | CVE-2024-8124İstismar yok | Inefficient Regular Expression Complexity in GitLabgitlab · gitlab · CWE-1333 | Yüksek7,5 | — | %40,0 | 12 Eyl 2024 |
41Planlayın | CVE-2024-25126İstismar yok | Rack ReDos in content type parsing (2nd degree polynomial)rack · rack · CWE-1333 | Yüksek7,5 | — | %35,4 | 28 Şub 2024 |
40Planlayın | CVE-2026-82617İstismar yok | Apache OpenNLP, Apache OpenNLP: ReDoS / stack exhaustion in RegexNameFinderFactory built-in EMAIL and URL patternsapache · opennlp · CWE-1333 | Kritik10,0 | — | %0,8 | 11 Eyl 2026 |
39İzleyin | CVE-2021-32837İstismar yok | mechanize vulnerable to ReDoSmechanize project · mechanize · CWE-1333 | Yüksek7,5 | — | %28,9 | 17 Oca 2023 |
39İzleyin | CVE-2023-29486İstismar yok | An issue was discovered in Heimdal Thor agent versions 3.4.2 and before 3.7.0 on Windows, allows attackers to bypass USB access restrictionsheimdalsecurity · thor · CWE-1333 | Kritik9,8 | — | %1,0 | 20 Ara 2023 |
39İzleyin | CVE-2025-62484İstismar yok | Zoom Workplace Clients - Inefficient Regular Expression Complexityzoom · meeting software development kit · CWE-1333 | Kritik9,8 | — | %0,3 | 13 Kas 2025 |
38İzleyin | CVE-2024-2829İstismar yok | Inefficient Regular Expression Complexity in GitLabgitlab · gitlab · CWE-1333 | Yüksek7,5 | — | %26,0 | 25 Nis 2024 |
36İzleyin | CVE-2024-2651İstismar yok | Inefficient Regular Expression Complexity in GitLabgitlab · gitlab · CWE-1333 | Orta6,5 | — | %33,3 | 14 May 2024 |
36İzleyin | CVE-2025-25200Kavram kanıtı | Koa has Inefficient Regular Expression Complexitykoajs · koa · CWE-1333 | Kritik9,2 | — | %0,8 | 12 Şub 2025 |
36İzleyin | CVE-2023-29487İstismar yok | An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS, allows attackers to cause heimdalsecurity · thor · CWE-1333 | Kritik9,1 | — | %0,7 | 20 Ara 2023 |
36İzleyin | CVE-2026-25547İstismar yok | Uncontrolled Resource Consumption in @isaacs/brace-expansionisaacs · brace-expansion · CWE-1333 | Kritik9,2 | — | %0,5 | 4 Şub 2026 |
34İzleyin | CVE-2026-47138İstismar yok | Parse Server: Pre-authentication denial of service via client version header regex backtrackingparse-community · parse-server · CWE-1333 | Yüksek8,7 | — | %0,9 | 12 Haz 2026 |
34İzleyin | CVE-2025-6998Kavram kanıtı | Calibre Web 0.6.24 & Autocaliweb 0.7.0 - ReDoScalibre web · calibre web · CWE-1333 | Yüksek8,7 | — | %0,8 | 24 Tem 2025 |
34İzleyin | CVE-2026-71190İstismar yok | In OpenStack Swift through 2.38.0, the proxy server Accept header parser contains a regular expression vulnerable to catastrophic backtrackiopenstack · swift · CWE-1333 | Yüksek8,7 | — | %0,8 | 5 Ağu 2026 |
34İzleyin | CVE-2026-72818İstismar yok | NLTK TweetTokenizer URL Pattern Backtracks Catastrophically on Naked-Domain-Like Inputnltk · nltk · CWE-1333 | Yüksek8,7 | — | %0,7 | 20 Ağu 2026 |
34İzleyin | CVE-2026-33079İstismar yok | Mistune ReDoS in LINK_TITLE_RE allows denial of service with crafted Markdown titleslepture · mistune · CWE-1333 | Yüksek8,7 | — | %0,7 | 6 May 2026 |
34İzleyin | CVE-2026-45305İstismar yok | Symfony: YAML Parser ReDoS via Catastrophic Backtracking in Parser::cleanup() Regexsensiolabs · symfony · CWE-1333 | Yüksek8,7 | — | %0,7 | 14 Tem 2026 |
34İzleyin | CVE-2026-80205İstismar yok | NLTK before 3.10.0 ReDoS via Text.findall() unvalidated regexnltk · nltk · CWE-1333 | Yüksek8,7 | — | %0,7 | 26 Ağu 2026 |
34İzleyin | CVE-2026-35458İstismar yok | Gotenberg has a ReDoS via extraHttpHeaders scope featurethecodingmachine · gotenberg · CWE-1333 | Yüksek8,7 | — | %0,6 | 7 Nis 2026 |
34İzleyin | CVE-2026-55574İstismar yok | vLLM: ReDoS via structured_outputs.regex compiled without timeout in xgrammar and outlines backendsvllm · vllm · CWE-1333 | Yüksek8,7 | — | %0,6 | 6 Tem 2026 |
34İzleyin | CVE-2026-92599İstismar yok | Joi before 17.13.7 and 18.2.6 ReDoS via isoDatehapijs · joi · CWE-1333 | Yüksek8,7 | — | %0,6 | 16 Eyl 2026 |
34İzleyin | CVE-2026-35213İstismar yok | Regular Expression Denial of Service (ReDoS) in @hapi/content HTTP header parsingcontent project · content · CWE-1333 | Yüksek8,7 | — | %0,6 | 6 Nis 2026 |
34İzleyin | CVE-2020-26303İstismar yok | GHSL-2020-289: Regular Expression Denial of Service (ReDoS) in insanebevacqua · insane · CWE-1333 | Yüksek8,7 | — | %0,5 | 26 Eki 2024 |
34İzleyin | CVE-2020-26304İstismar yok | GHSL-2020-290: Regular Expression Denial of Service (ReDoS) in foundation-sitesfoundation · foundation · CWE-1333 | Yüksek8,7 | — | %0,5 | 26 Eki 2024 |
- CVE-2023-336443Planlayın
Inefficient Regular Expression Complexity in GitLab
YüksekCVSS 7,5İstismar yokEPSS %44gitlab · gitlab1 Ağu 2023
- CVE-2024-812442Planlayın
Inefficient Regular Expression Complexity in GitLab
YüksekCVSS 7,5İstismar yokEPSS %40gitlab · gitlab12 Eyl 2024
- CVE-2024-2512641Planlayın
Rack ReDos in content type parsing (2nd degree polynomial)
YüksekCVSS 7,5İstismar yokEPSS %35rack · rack28 Şub 2024
- CVE-2026-8261740Planlayın
Apache OpenNLP, Apache OpenNLP: ReDoS / stack exhaustion in RegexNameFinderFactory built-in EMAIL and URL patterns
KritikCVSS 10,0İstismar yokEPSS %1apache · opennlp11 Eyl 2026
- CVE-2021-3283739İzleyin
mechanize vulnerable to ReDoS
YüksekCVSS 7,5İstismar yokEPSS %29mechanize project · mechanize17 Oca 2023
- CVE-2023-2948639İzleyin
An issue was discovered in Heimdal Thor agent versions 3.4.2 and before 3.7.0 on Windows, allows attackers to bypass USB access restrictions
KritikCVSS 9,8İstismar yokEPSS %1heimdalsecurity · thor20 Ara 2023
- CVE-2025-6248439İzleyin
Zoom Workplace Clients - Inefficient Regular Expression Complexity
KritikCVSS 9,8İstismar yokEPSS %0zoom · meeting software development kit13 Kas 2025
- CVE-2024-282938İzleyin
Inefficient Regular Expression Complexity in GitLab
YüksekCVSS 7,5İstismar yokEPSS %26gitlab · gitlab25 Nis 2024
- CVE-2024-265136İzleyin
Inefficient Regular Expression Complexity in GitLab
OrtaCVSS 6,5İstismar yokEPSS %33gitlab · gitlab14 May 2024
- CVE-2025-2520036İzleyin
Koa has Inefficient Regular Expression Complexity
KritikCVSS 9,2Kavram kanıtıEPSS %1koajs · koa12 Şub 2025
- CVE-2023-2948736İzleyin
An issue was discovered in Heimdal Thor agent versions 3.4.2 and before on Windows and 2.6.9 and before on macOS, allows attackers to cause
KritikCVSS 9,1İstismar yokEPSS %1heimdalsecurity · thor20 Ara 2023
- CVE-2026-2554736İzleyin
Uncontrolled Resource Consumption in @isaacs/brace-expansion
KritikCVSS 9,2İstismar yokEPSS %0isaacs · brace-expansion4 Şub 2026
- CVE-2026-4713834İzleyin
Parse Server: Pre-authentication denial of service via client version header regex backtracking
YüksekCVSS 8,7İstismar yokEPSS %1parse-community · parse-server12 Haz 2026
- CVE-2025-699834İzleyin
Calibre Web 0.6.24 & Autocaliweb 0.7.0 - ReDoS
YüksekCVSS 8,7Kavram kanıtıEPSS %1calibre web · calibre web24 Tem 2025
- CVE-2026-7119034İzleyin
In OpenStack Swift through 2.38.0, the proxy server Accept header parser contains a regular expression vulnerable to catastrophic backtracki
YüksekCVSS 8,7İstismar yokEPSS %1openstack · swift5 Ağu 2026
- CVE-2026-7281834İzleyin
NLTK TweetTokenizer URL Pattern Backtracks Catastrophically on Naked-Domain-Like Input
YüksekCVSS 8,7İstismar yokEPSS %1nltk · nltk20 Ağu 2026
- CVE-2026-3307934İzleyin
Mistune ReDoS in LINK_TITLE_RE allows denial of service with crafted Markdown titles
YüksekCVSS 8,7İstismar yokEPSS %1lepture · mistune6 May 2026
- CVE-2026-4530534İzleyin
Symfony: YAML Parser ReDoS via Catastrophic Backtracking in Parser::cleanup() Regex
YüksekCVSS 8,7İstismar yokEPSS %1sensiolabs · symfony14 Tem 2026
- CVE-2026-8020534İzleyin
NLTK before 3.10.0 ReDoS via Text.findall() unvalidated regex
YüksekCVSS 8,7İstismar yokEPSS %1nltk · nltk26 Ağu 2026
- CVE-2026-3545834İzleyin
Gotenberg has a ReDoS via extraHttpHeaders scope feature
YüksekCVSS 8,7İstismar yokEPSS %1thecodingmachine · gotenberg7 Nis 2026
- CVE-2026-5557434İzleyin
vLLM: ReDoS via structured_outputs.regex compiled without timeout in xgrammar and outlines backends
YüksekCVSS 8,7İstismar yokEPSS %1vllm · vllm6 Tem 2026
- CVE-2026-9259934İzleyin
Joi before 17.13.7 and 18.2.6 ReDoS via isoDate
YüksekCVSS 8,7İstismar yokEPSS %1hapijs · joi16 Eyl 2026
- CVE-2026-3521334İzleyin
Regular Expression Denial of Service (ReDoS) in @hapi/content HTTP header parsing
YüksekCVSS 8,7İstismar yokEPSS %1content project · content6 Nis 2026
- CVE-2020-2630334İzleyin
GHSL-2020-289: Regular Expression Denial of Service (ReDoS) in insane
YüksekCVSS 8,7İstismar yokEPSS %1bevacqua · insane26 Eki 2024
- CVE-2020-2630434İzleyin
GHSL-2020-290: Regular Expression Denial of Service (ReDoS) in foundation-sites
YüksekCVSS 8,7İstismar yokEPSS %1foundation · foundation26 Eki 2024