Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: CVE-2024-22640 #712

Merged
merged 1 commit into from
Apr 20, 2024
Merged

Conversation

josh-gaby
Copy link
Contributor

@josh-gaby josh-gaby commented Apr 20, 2024

Add possessive quantifiers to the regex to prevent catastrophic backtracking.
CVE-2024-22640

Fixes: #711

Add possessive quantifiers to the regex to prevent catastrophic backtracking.
@CLAassistant
Copy link

CLAassistant commented Apr 20, 2024

CLA assistant check
All committers have signed the CLA.

@josh-gaby josh-gaby changed the title fix: CSV-2024-22640 fix: CVE-2024-22640 Apr 20, 2024
@williamdes
Copy link
Contributor

Could you add in your description the CVE number and "Fixes: #711"

@josh-gaby
Copy link
Contributor Author

josh-gaby commented Apr 20, 2024

Could you add in your description the CVE number and "Fixes: #711"

Done

@williamdes
Copy link
Contributor

@nicolaasuni

@nicolaasuni nicolaasuni merged commit 05f3a28 into tecnickcom:main Apr 20, 2024
1 check passed
@williamdes williamdes mentioned this pull request May 29, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

TCPDF vulnerable to Regular Expression Denial of Service
4 participants