CVE

CVE-2018-18385

CVE-2018-18385

Asciidoctor v1.5.7.1 allows remote attackers to cause a denial of service (infinite loop), as demonstrated by web applications that deliver untrusted input to this product, because Parser#next_block misuses a "while true" statement.

Source: CVE-2018-18385

Exit mobile version