VYPR
Moderate severityNVD Advisory· Published Oct 26, 2024· Updated Oct 28, 2024

GHSL-2020-290: Regular Expression Denial of Service (ReDoS) in foundation-sites

CVE-2020-26304

Description

Foundation is a front-end framework. Versions 6.3.3 and prior contain one or more regular expressions that are vulnerable to Regular Expression Denial of Service (ReDoS). As of time of publication, it is unknown if any fixes are available.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
foundation-sitesnpm
<= 6.3.3

Affected products

1

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.