ReDoS Vulnerabilities in Microsoft Products Announced
Article Content
Browse articles
Two vulnerabilities related to Regular Expression Denial of Service (ReDoS) have been reported. CVE-2020-28493, published on February 1, 2021, and CVE-2021-42836, published on October 22, 2021, both allow attackers to exploit regular expressions in software, potentially leading to denial of service. Affected products include those utilizing these specific CVEs.
Ask AI about this cluster
Answers cite the sources they use
Updated 183d ago How this analysis works
Timeline
2021-02-01
CVE-2020-28493 published
2021-10-22
CVE-2021-42836 published
2026-02-18
Information published about both CVEs
More articles in this cluster (2)
Following this threat?
Track CVE-2020-28493 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical DoS Vulnerabilities in python3-sqlparse Affecting SUSE Systems Recent updates for python3-sqlparse have revealed multiple critical denial of service (DoS) vulnerabilities. The vulnerabilities, identified as CVE-2026-54284, CVE-2026-59893, CVE-2026-59894, and CVE-2026-71491, can lead to excessive resource consumption and potential code injection through crafted SQL inputs.…
Multiple Node.js Security Vulnerabilities in Oracle Linux 9 and 10 Oracle has released multiple security advisories for Node.js vulnerabilities affecting Oracle Linux 9 and 10. The advisories include ELSA-2026-61383 and ELSA-2026-61386 for Oracle Linux 9, addressing CVEs such as CVE-2026-56846, CVE-2026-56848, and CVE-2026-69152. The vulnerabilities could potentially allow for remote…