Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
ReDOS in Rocket.Chat
Vulnerability Description
Rocket.Chat is an open-source fully customizable communications platform developed in JavaScript. In Rocket.Chat before versions 3.11.3, 3.12.2, and 3.13 an issue with certain regular expressions could lead potentially to Denial of Service. This was fixed in versions 3.11.3, 3.12.2, and 3.13.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Vulnerability Type
未加控制的资源消耗(资源穷尽)
Vulnerability Title
Rocket.Chat 资源管理错误漏洞
Vulnerability Description
Rocket.Chat是一套开源的团队聊天软件。 Rocket.Chat 存在资源管理错误漏洞,该漏洞源于某些正则表达式的问题可能会导致拒绝服务。以下产品及版本受到影响:Rocket.Chat before versions 3.11.3, 3.12.2, and 3.13。
CVSS Information
N/A
Vulnerability Type
N/A