Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Possible Regular Expression Denial of Service (ReDoS) used on uncontrolled data in nitrado.js
Vulnerability Description
nitrado.js is a type safe wrapper for the Nitrado API. Possible ReDoS with lib input of `{{` and with many repetitions of `{{|`. This issue has been patched in all versions above `0.2.5`. There are currently no known workarounds.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
未加控制的资源消耗(资源穷尽)
Vulnerability Title
nitrado.js 安全漏洞
Vulnerability Description
nitrado.js是Cain个人开发者的一种 Nitrado API 的类型安全包装器。 nitrado.js 0.2.5之前版本存在安全漏洞,该漏洞源于存在不受控制的数据的多项式正则表达式。
CVSS Information
N/A
Vulnerability Type
N/A