CVE Database
/

CVE-2017-16023

Back to search

CVE-2017-16023

Published: Jun 4, 2018

Modified: Sep 17, 2024

PUBLISHED

Description

Decamelize is used to convert a dash/dot/underscore/space separated string to camelCase. Decamelize 1.1.0 through 1.1.1 uses regular expressions to evaluate a string and takes unescaped separator values, which can be used to create a denial of service attack.

VendorProductVersions

HackerOne

decamelize node module

affected
>=1.1.0 <=1.1.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now