Unknown · Handsontable · CVE-2021-23446
**Name of the Vulnerable Software and Affected Versions**
handsontable versions 0 through 10.0.0 (excluding 10.0.0)
**Description**
The issue concerns a Regular Expression Denial of Service (ReDoS) in the `Handsontable.helper.isNumeric` function. This affects the handsontable package, making it vulnerable to denial of service attacks due to inefficient regular expression handling.
**Recommendations**
For handsontable versions 0 through 10.0.0 (excluding 10.0.0), update to version 10.0.0 or later to resolve the issue. As a temporary workaround, consider disabling the `Handsontable.helper.isNumeric` function until a patch is available.