Nodeca JS-YAML是Nodeca个人开发者开源的一个JavaScript YAML解析器和转储器。 Nodeca js-yaml 5.2.1之前版本存在资源管理错误漏洞,该漏洞源于src/tag/sequence/omap.ts中!!omap标签的YAML11_SCHEMA支持使用omapTag.addItem()进行线性重复键扫描,导致解析特制有序映射文档时CPU消耗呈O(n²)增长,容易受到资源消耗攻击。以下版本受到影响:5.0.0版本至5.2.1之前版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
VULNERABLE: CVE-2026-59870 RESULT:VULNERABLE 5.2.0 n=20000 elapsed=6238ms n=10000 elapsed=799ms ratio=7.81 (quadratic growth in !!omap parsing)
| CVE-2026-59869 | 7.5 HIGH | js-yaml: YAML merge-key chains can force quadratic CPU consumption |
| CVE-2026-59868 | 5.3 MEDIUM | js-yaml: YAML merge-key chains can force quadratic CPU consumption |
No comments yet