CVE-2018-20801

In js/parts/SvgRenderer.js in Highcharts JS before 6.1.0, the use of backtracking regular expressions permitted an attacker to conduct a denial of service attack against the SVGRenderer component, aka ReDoS.
Configurations

Configuration 1 (hide)

cpe:2.3:a:highcharts:highcharts:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-03-14 16:29

Updated : 2023-12-10 12:59


NVD link : CVE-2018-20801

Mitre link : CVE-2018-20801

CVE.ORG link : CVE-2018-20801


JSON object : View

Products Affected

highcharts

  • highcharts
CWE
CWE-185

Incorrect Regular Expression