Skip to main content

Vendor/product archive

remarshal_project / remarshal CVEs

Beta · best-effort

1 CVEs tagged to remarshal_project / remarshal0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.

CVE-2023-47163

Published Nov 13, 2023

Remarshal prior to v0.17.1 expands YAML alias nodes unlimitedly, hence Remarshal is vulnerable to Billion Laughs Attack. Processing untrusted YAML files may cause a denial-of-serv…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-1 of 1 CVEsPage 1 of 1