7.5
CVSSv3

CVE-2020-1920

Published: 01/06/2021 Updated: 06/10/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

A regular expression denial of service (ReDoS) vulnerability in the validateBaseUrl function can cause the application to use excessive resources, become unresponsive, or crash. This was introduced in react-native version 0.59.0 and fixed in version 0.64.1.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

facebook react-native

Github Repositories

AutoPoC Generator HoneyPoC

AutoHoneyPoC AutoPoC Generator HoneyPoC ultimate edition If this is the first time you've heard of or seen the project you'll probably want to read the blog post on it blogzsecuk/honeypoc-ultimate/ While I'm releasing AutoPoC, the framework on its own is harmless as it requires some pre-requisites to build the automated backend, but the outputted cod