Search Results (Refine Search)
- Results Type: Overview
- Search Type: Search All
- CPE Vendor: cpe:/:yaml_project
- CPE Product: cpe:/:yaml_project:yaml
- CPE Product Version: cpe:/:yaml_project:yaml:1.29
Vuln ID | Summary | CVSS Severity |
---|---|---|
CVE-2022-3064 |
Parsing malicious or large YAML documents can consume excessive amounts of CPU or memory. Published: December 27, 2022; 5:15:14 PM -0500 |
V4.0:(not available) V3.1: 7.5 HIGH V2.0:(not available) |
CVE-2021-4235 |
Due to unbounded alias chasing, a maliciously crafted YAML file can cause the system to consume significant system resources. If parsing user input, this may be used as a denial of service vector. Published: December 27, 2022; 5:15:11 PM -0500 |
V4.0:(not available) V3.1: 5.5 MEDIUM V2.0:(not available) |