CVE-2022-3517

Published

Severity

CVSS v3:
7.5 HIGH
CVSS v2:
N/A

Description

A vulnerability was found in the minimatch package. This flaw allows a Regular Expression Denial of Service (ReDoS) when calling the braceExpand function with specific arguments, resulting in a Denial of Service.

References

Configurations

CPE23Version StartVersion EndExact Version
cpe:2.3:a:minimatch_project:minimatch:*:*:*:*:*:node.js:*:*n/a3.0.5*
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*n/an/a10.0
cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*n/an/a36
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*n/an/a37

External Links