CVE-2016-10527

The riot-compiler version version 2.3.21 has an issue in a regex (Catastrophic Backtracking) thats make it unusable under certain conditions.
References
Link Resource
https://github.com/riot/compiler/issues/46 Third Party Advisory
https://nodesecurity.io/advisories/86 Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:riot.js:riot-compiler:2.3.21:*:*:*:*:node.js:*:*

History

No history.

Information

Published : 2018-05-31 20:29

Updated : 2023-12-10 12:30


NVD link : CVE-2016-10527

Mitre link : CVE-2016-10527

CVE.ORG link : CVE-2016-10527


JSON object : View

Products Affected

riot.js

  • riot-compiler
CWE
CWE-399

Resource Management Errors

CWE-400

Uncontrolled Resource Consumption