CVE-2021-4306

A vulnerability classified as problematic has been found in cronvel terminal-kit up to 2.1.7. Affected is an unknown function. The manipulation leads to inefficient regular expression complexity. Upgrading to version 2.1.8 is able to address this issue. The name of the patch is a2e446cc3927b559d0281683feb9b821e83b758c. It is recommended to upgrade the affected component. The identifier of this vulnerability is VDB-217620.
Configurations

Configuration 1 (hide)

cpe:2.3:a:terminal-kit_project:terminal-kit:*:*:*:*:*:node.js:*:*

History

11 Apr 2024, 01:13

Type Values Removed Values Added
Summary
  • (es) Se ha encontrado una vulnerabilidad clasificada como problemática en cronvel terminal-kit hasta 2.1.7, con identificador de vulnerabilidad VDB-217620. Una función desconocida es afectada por esta función. La manipulación conduce a una complejidad de expresiones regulares ineficiente. La actualización a la versión 2.1.8 puede solucionar este problema. El nombre del parche es a2e446cc3927b559d0281683feb9b821e83b758c. Se recomienda actualizar el componente afectado..

12 Jan 2023, 20:12

Type Values Removed Values Added
CPE cpe:2.3:a:terminal-kit_project:terminal-kit:*:*:*:*:*:node.js:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
First Time Terminal-kit Project terminal-kit
Terminal-kit Project
References (MISC) https://vuldb.com/?ctiid.217620 - (MISC) https://vuldb.com/?ctiid.217620 - Third Party Advisory
References (MISC) https://github.com/cronvel/terminal-kit/commit/a2e446cc3927b559d0281683feb9b821e83b758c - (MISC) https://github.com/cronvel/terminal-kit/commit/a2e446cc3927b559d0281683feb9b821e83b758c - Patch, Third Party Advisory
References (MISC) https://vuldb.com/?id.217620 - (MISC) https://vuldb.com/?id.217620 - Third Party Advisory
References (MISC) https://github.com/cronvel/terminal-kit/releases/tag/v2.1.8 - (MISC) https://github.com/cronvel/terminal-kit/releases/tag/v2.1.8 - Release Notes, Third Party Advisory

07 Jan 2023, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-01-07 17:15

Updated : 2024-05-14 09:48


NVD link : CVE-2021-4306

Mitre link : CVE-2021-4306

CVE.ORG link : CVE-2021-4306


JSON object : View

Products Affected

terminal-kit_project

  • terminal-kit
CWE