← Back to CVE List
CVE-2017-16115
The timespan module is vulnerable to regular expression denial of service. Given 50k characters of untrusted user input it will block the event loop for around 10 seconds.
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt