OSV 1.4.0 · github-reviewed · 修改于 2021-05-20 03:49
发布时间
2021-05-20 07:02
GitHub 审查时间
2021-05-20 03:49
NVD 发布时间
2021-05-14 03:15
源文件
advisories/github-reviewed/2021/05/GHSA-hf44-3mx6-vhhw/GHSA-hf44-3mx6-vhhw.json
The regex injection that may lead to Denial of Service.
Will be patched in 2.4 and 3.0
Versions lower than 2.x are only affected if the navigation module is added
See this pull request for the fix: https://github.com/graphhopper/graphhopper/pull/2304
If you have any questions or comments about this advisory please send us an Email or create a topic here.