CVE Database
/

CVE-2018-1107

Back to search

CVE-2018-1107

Published: Mar 30, 2021

Modified: Aug 5, 2024

PUBLISHED

Description

It was discovered that the is-my-json-valid JavaScript library used an inefficient regular expression to validate JSON fields defined to have email format. A specially crafted JSON file could cause it to consume an excessive amount of CPU time when validated.

VendorProductVersions

n/a

nodejs-is-my-json-valid

affected
is-myjson-valid 2.17.2, is-myjson-valid 1.4.1

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now