VYPR

RubyGems package

user_agent_parser

pkg:gem/user_agent_parser

Vulnerabilities (1)

  • CVE-2020-5243Feb 20, 2020
    affected < 2.6.0fixed 2.6.0

    uap-core before 0.7.3 is vulnerable to a denial of service attack when processing crafted User-Agent strings. Some regexes are vulnerable to regular expression denial of service (REDoS) due to overlapping capture groups. This allows remote attackers to overload a server by settin