CVE-2023-50249

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Dec 20, 2023
Updated: Dec 28, 2023
CWE ID 1333
CWE ID 400

Summary

CVE-2023-50249 is a ReDoS (Regular expression Denial of Service) vulnerability found in Sentry's Astro SDK 7.78.0-7.86.0 for JavaScript. This vulnerability can be exploited under certain conditions to cause excessive computation times on the server, leading to denial of service (DoS). The affected products include sentry/astro versions 7.78.0-7.86.0. The vulnerability has been remediated in version 7.87.0 of sentry/astro. The potential danger posed by this vulnerability is high, with a base severity rating of HIGH and an availability impact score of HIGH according to the NIST National Vulnerability Database (NVD).

Explore Beyond the CVE Basics with Recorded Future's Vulnerability Intelligence

Note: This is just a basic overview providing quick insights into CVE-2023-50249 information. Gain full access to comprehensive CVE data, risk scores, prioritization, and mitigation data through Recorded Future's Vulnerability Intelligence:
  • Prioritize with Risk-Based Scoring
  • Explore the Extensive Vulnerability Database
  • Receive Early Alerts on Emerging CVEs
  • Focus on Critical Exploitable Vulnerabilities
  • Streamline Remediation with Integration Options