Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Security] Fix ReDoS #1164

Open
wants to merge 1 commit into
base: master
Choose a base branch
from
Open

Conversation

ready-research
Copy link

Fix ReDoS

Reported in https://www.huntr.dev/bounties/423e2208-6064-4150-b6f5-22f15f540259/, you can access this using GitHub.
Please validate using Mark as valid and also confirm the fix. Thank you.

Copy link
Collaborator

@jsdevel jsdevel left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

please add a test

@lagden
Copy link
Contributor

lagden commented Oct 4, 2021

done here: #1169

@ready-research
Copy link
Author

Please validate the above huntr link using Mark as valid and also confirm the fix. Thank you.

@aartichella
Copy link

aartichella commented Oct 29, 2021

Hi @jsdevel , could you give an update on when this might be merged. This has an impact on our project.

@jsdevel
Copy link
Collaborator

jsdevel commented Nov 3, 2021

@ready-research @aartichella i need a test added with this change and the build needs to pass.

@smokhov
Copy link
Contributor

smokhov commented Jan 14, 2022

@jsdevel - A test was already merged from #1177 / #1169. Just need to merge the fix itself and respond to @ready-research to "mark as valid" in their form.

@jsdevel
Copy link
Collaborator

jsdevel commented Jun 15, 2022

@ready-research please rebase/get the build to pass.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
5 participants