PT-2025-10718 · Datalust · Datalust Seq
Nblumhardt
·
Published
2025-03-11
·
Updated
2025-10-10
·
CVE-2024-58102
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Datalust Seq versions prior to 2024.3.13545
Description
An issue was discovered that allows stack consumption when parsing user-supplied queries containing deeply nested expressions due to an insecure default parsing depth limit.
Recommendations
For versions prior to 2024.3.13545, consider updating to version 2024.3.13545 or later to resolve the issue. As a temporary workaround, consider restricting the use of deeply nested expressions in user-supplied queries to minimize the risk of exploitation.
Fix
Uncontrolled Recursion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Datalust Seq