CVE-2020-28500

All FrameworksLodashCWE-OtherCVE-2020-28500

CVE-2020-28500

State: PUBLISHED · Published: 2021-02-15 · Updated: 2024-09-16 · Assigner: snyk
Description
Lodash versions prior to 4.17.21 are vulnerable to Regular Expression Denial of Service (ReDoS) via the toNumber, trim and trimEnd functions.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2020/28xxx/CVE-2020-28500.json