CVE-2021-41817
Published Jan 1, 2022Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.
Vendor/product archive
1 CVEs tagged to ruby-lang / date — 0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
Date.parse in the date gem through 3.2.0 for Ruby allows ReDoS (regular expression Denial of Service) via a long string. The fixed versions are 3.2.1, 3.1.2, 3.0.2, and 2.0.1.