CVE

Id
89356  
CVE No.
CVE-2016-2537  
Status
Candidate  
Description
The is-my-json-valid package before 2.12.4 for Node.js has an incorrect exports["utc-millisec"] regular expression, which allows remote attackers to cause a denial of service (blocked event loop) via a crafted string.  
Phase
Assigned (20160222)  
Votes
None (candidate not yet proposed)  
Comments