CVE
- Id
- 89356
- CVE No.
- CVE-2016-2537
- Status
- Candidate
- Description
- The is-my-json-valid package before 2.12.4 for Node.js has an incorrect exports["utc-millisec"] regular expression, which allows remote attackers to cause a denial of service (blocked event loop) via a crafted string.
- Phase
- Assigned (20160222)
- Votes
- None (candidate not yet proposed)
- Comments