Skip to content
Commits on Source (2)
CVE-2018-XXXX [Regular Expression Denial of Service vulnerability in the strict mode functionality]
- node-ssri <unfixed> (unimportant)
- node-ssri <unfixed> (unimportant; bug #891980)
NOTE: fixed in 5.2.2
NOTE: https://github.com/zkat/ssri/commit/d0ebcdc22cb5c8f47f89716d08b3518b2485d65d
NOTE: https://github.com/zkat/ssri/issues/10
......@@ -37673,6 +37673,7 @@ CVE-2017-11430
RESERVED
- ruby-omniauth-saml <unfixed>
NOTE: fixed in 1.10.0
NOTE: https://github.com/omniauth/omniauth-saml/issues/156
NOTE: https://github.com/omniauth/omniauth-saml/pull/157
NOTE: https://duo.com/blog/duo-finds-saml-vulnerabilities-affecting-multiple-implementations
NOTE: https://www.kb.cert.org/vuls/id/475445