domain-suffix RegEx Denial of Service
High severity
GitHub Reviewed
Published
Mar 28, 2024
to the GitHub Advisory Database
•
Updated Sep 3, 2025
Description
Published by the National Vulnerability Database
Mar 27, 2024
Published to the GitHub Advisory Database
Mar 28, 2024
Reviewed
Aug 29, 2024
Last updated
Sep 3, 2025
RegEx Denial of Service in domain-suffix 1.0.8 allows attackers to crash the application via crafted input to the parse function.
PoC
References