CVE-2017-16023

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
04/06/2018
Last modified:
09/10/2019

Description

Decamelize is used to convert a dash/dot/underscore/space separated string to camelCase. Decamelize 1.1.0 through 1.1.1 uses regular expressions to evaluate a string and takes unescaped separator values, which can be used to create a denial of service attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:decamelize_project:decamelize:1.1.0:*:*:*:*:*:*:*
cpe:2.3:a:decamelize_project:decamelize:1.1.1:*:*:*:*:*:*:*