在 sprintf-js 1.1.3 及更早版本中,程序会将未限制精度的格式说明符直接传递给 、 和 方法,且未进行任何验证,从而导致未捕获的 RangeError 异常。攻击者若能控制格式字符串,便可注入超过 ECMAScript 规范限制的精度的值,以极小的负载即可导致调用操作中止。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| alexei | sprintf-js | ≤ 1.1.3 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| alexei | sprintf-js | 0 ~ 1.1.3 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet