Description

find-my-way is a fast, open source HTTP router, internally using a Radix Tree (aka compact Prefix Tree), supports route params, wildcards, and it's framework independent. A bad regular expression is generated any time one has two parameters within a single segment, when adding a `-` at the end, like `/:a-:b-`. This may cause a denial of service in some instances. Users are advised to update to find-my-way v8.2.2 or v9.0.1. or subsequent versions. There are no known workarounds for this issue.

INFO

Published Date :

2024-09-18T16:47:57.138Z

Last Modified :

2024-09-18T18:07:10.935Z

Source :

GitHub_M
AFFECTED PRODUCTS

The following products are affected by CVE-2024-45813 vulnerability.

Vendors Products
Redhat
  • Acm
  • Multicluster Engine
  • Openshift Devspaces

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact