CVE-2018-20801: Incorrect Regular Expression
(updated )
In js/parts/SvgRenderer.js
in Highcharts, the use of backtracking regular expressions permitted an attacker to conduct a denial of service attack against the SVGRenderer
component, aka ReDoS.
References
Detect and mitigate CVE-2018-20801 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →