#VU69494 Incorrect Regular Expression in cleo - CVE-2022-42966
Published: November 22, 2022
cleo
sdispater (Sébastien Eustace)
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient input validation when processing regular expressions in the Table.set_rows method. A remote attacker can pass specially crafted data to the application and perform regular expression denial of service (ReDos) attack.