Security Advisory

CVE-2017-15010

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2017-10-03 16:00:00
Last updated 2024-08-05 19:42:22
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

A ReDoS (regular expression denial of service) flaw was found in the tough-cookie module before 2.3.3 for Node.js. An attacker that is able to make an HTTP request using a specially crafted cookie may cause the application to consume an excessive amount of CPU.