sheetjs kayıtları
sheetjs üreticisine ait 3 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %33,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-1321 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')1
- CWE-1333 Inefficient Regular Expression Complexity1
- CWE-400 Uncontrolled Resource Consumption1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
3 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
31İzleyin | CVE-2023-30533Kavram kanıtı | SheetJS Community Edition before 0.19.3 allows Prototype Pollution via a crafted file.sheetjs · sheetjs · CWE-1321 | Yüksek7,8 | — | %1,0 | 24 Nis 2023 |
30İzleyin | CVE-2024-22363Kavram kanıtı | SheetJS Community Edition before 0.20.2 is vulnerable.to Regular Expression Denial of Service (ReDoS).CWE-1333 | Yüksek7,5 | — | %0,8 | 5 Nis 2024 |
22İzleyin | CVE-2021-32014İstismar yok | SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (CPU consumption) via a crafted .xlsx document that is sheetjs · sheetjs · CWE-400 | Orta5,5 | — | %0,9 | 19 Tem 2021 |
- CVE-2023-3053331İzleyin
SheetJS Community Edition before 0.19.3 allows Prototype Pollution via a crafted file.
YüksekCVSS 7,8Kavram kanıtıEPSS %1sheetjs · sheetjs24 Nis 2023
- CVE-2024-2236330İzleyin
SheetJS Community Edition before 0.20.2 is vulnerable.to Regular Expression Denial of Service (ReDoS).
YüksekCVSS 7,5Kavram kanıtıEPSS %15 Nis 2024
- CVE-2021-3201422İzleyin
SheetJS and SheetJS Pro through 0.16.9 allows attackers to cause a denial of service (CPU consumption) via a crafted .xlsx document that is
OrtaCVSS 5,5İstismar yokEPSS %1sheetjs · sheetjs19 Tem 2021