Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-0256 | Fresh is a module used by the Express.js framework for HTTP response freshness testing. It is vulnerable to a regular expression denial of service when it is passed specially crafted input to parse. This causes the event loop to be blocked causing a denial of service condition. |
Github GHSA |
GHSA-9qj9-36jm-prpv | Regular Expression Denial of Service in fresh |
Thu, 08 Oct 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: hackerone
Published:
Updated: 2026-10-08T19:43:05.054Z
Reserved: 2017-10-29T00:00:00.000Z
Link: CVE-2017-16119
Updated: 2024-08-05T20:13:07.207Z
Status : Modified
Published: 2018-06-07T02:29:02.987
Modified: 2026-10-08T20:17:26.467
Link: CVE-2017-16119
OpenCVE Enrichment
No data.
EUVD
Github GHSA