Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Nakah

#18068of 53,634
15Total CVSS
Vulnerabilities · 2
High
2
PT-2025-40000
7.5
2025-09-30
Financejs · Financejs · CVE-2025-56571
**Name of the Vulnerable Software and Affected Versions** Finance.js versions 4.1.0 **Description** A flaw exists in Finance.js version 4.1.0 that can lead to a Denial of Service (DoS). This occurs due to improper handling of recursion/iteration limits within the IRR function’s depth parameter, potentially causing excessive CPU usage and resulting in application stalls or crashes. The seekZero() parameter can also be exploited to cause a denial of service. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2025-40001
7.5
2025-09-30
Financejs · Financejs · CVE-2025-56572
**Name of the Vulnerable Software and Affected Versions** finance.js version 4.1.0 **Description** An issue allows a remote attacker to cause a denial of service via the `seekZero()` parameter. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.