Security Advisory

CVE-2016-2537

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2016-02-23 02:00:00
Last updated 2024-08-05 23:32:20
Assigner mitre
State PUBLISHED

Description

The is-my-json-valid package before 2.12.4 for Node.js has an incorrect exports[utc-millisec] regular expression, which allows remote attackers to cause a denial of service (blocked event loop) via a crafted string.