VDB
CVE-2021-40897
CVE-2021-40897
PUBLISHED
CVSS 7.5 HIGH
A Regular Expression Denial of Service (ReDOS) vulnerability was discovered in split-html-to-chars v1.0.5 when splitting crafted invalid htmls.
EPSS 1.05% · 62.9th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
1.05%
62.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| split-html-to-chars_project | split-html-to-chars | 1.0.5 |
| n/a | n/a | * |
Timeline
- Jun 27, 2022 CVE Published
- Jun 28, 2022 EPSS Score
- Aug 16, 2022 EPSS Score
- Oct 3, 2022 EPSS Score
- Nov 20, 2022 EPSS Score
- Jan 7, 2023 EPSS Score
- Feb 24, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 13, 2023 EPSS Score
- Jul 19, 2023 EPSS Score
- Sep 5, 2023 EPSS Score
- Oct 23, 2023 EPSS Score