CVE-2023-50249

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Dec 20, 2023
Updated: Dec 28, 2023
CWE ID 1333
CWE ID 400

Summary

CVE-2023-50249 is a ReDoS (Regular expression Denial of Service) vulnerability found in Sentry's Astro SDK 7.78.0-7.86.0 for JavaScript. This vulnerability can be exploited under certain conditions to cause excessive computation times on the server, leading to denial of service (DoS). The affected products include sentry/astro versions 7.78.0-7.86.0. The vulnerability has been remediated in version 7.87.0 of sentry/astro. The potential danger posed by this vulnerability is high, with a base severity rating of HIGH and an availability impact score of HIGH according to the NIST National Vulnerability Database (NVD).

Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share

Prioritize, Pinpoint, and Act to Prevent Vulnerability Exploits with Recorded Future

Note: This is just a basic overview providing quick insights into CVE-2023-50249 information. Gain full access to comprehensive CVE data, third party vulnerabilities, compromised credentials and more with Recorded Future
  • Gain complete coverage of your cyber, third party, and physical attack surface
  • Proactively mitigate threats before they turn into costly attacks
  • Make fast, effective, data-driven decisions