Regular Expression Denial of Service (ReDoS) Vulnerability
CVE-2023-25166
5.5MEDIUM
What is CVE-2023-25166?
formula is a math and string formula parser. In versions prior to 3.0.1 crafted user-provided strings to formula's parser might lead to polynomial execution time and a denial of service. Users should upgrade to 3.0.1+. There are no known workarounds for this vulnerability.
Affected Version(s)
formula < 3.0.1
