PT-2022-11294 · Unknown · Delight Nashorn Sandbox

Sugarp1Go

·

Published

2022-06-14

·

Updated

2023-08-08

·

CVE-2021-40660

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Delight Nashorn Sandbox version 0.2.0
Description An issue was discovered in Delight Nashorn Sandbox, which has a ReDoS vulnerability that can be exploited to launch a denial of service (DoS) attack.
Recommendations For Delight Nashorn Sandbox version 0.2.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Weakness Enumeration

Related Identifiers

CVE-2021-40660
GHSA-38J3-6FM8-PFGC

Affected Products

Delight Nashorn Sandbox