CVE-2023-47163
Published Nov 13, 2023Remarshal prior to v0.17.1 expands YAML alias nodes unlimitedly, hence Remarshal is vulnerable to Billion Laughs Attack. Processing untrusted YAML files may cause a denial-of-serv…
Vendor/product archive
1 CVEs tagged to remarshal_project / remarshal — 0 Critical, 1 High, 0 Medium, 0 Low, 0 Unrated.
Remarshal prior to v0.17.1 expands YAML alias nodes unlimitedly, hence Remarshal is vulnerable to Billion Laughs Attack. Processing untrusted YAML files may cause a denial-of-serv…