CVE-2023-22792

Severity CVSS v4.0:
Pending analysis
Type:
CWE-400 Uncontrolled Resource Consumption ('Resource Exhaustion')
Publication date:
09/02/2023
Last modified:
24/03/2025

Description

A regular expression based DoS vulnerability in Action Dispatch

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rubyonrails:rails:*:*:*:*:*:*:*:* 3.0.0 (including) 6.0.6.1 (excluding)
cpe:2.3:a:rubyonrails:rails:*:*:*:*:*:*:*:* 6.1.0 (including) 6.1.7.1 (excluding)
cpe:2.3:a:rubyonrails:rails:*:*:*:*:*:*:*:* 7.0.0 (including) 7.0.4.1 (excluding)