CVE-2022-31110

Source
https://nvd.nist.gov/vuln/detail/CVE-2022-31110
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-31110.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2022-31110
Aliases
Related
Published
2022-06-29T18:15:08Z
Modified
2025-02-08T21:36:18Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

RSSHub is an open source, extensible RSS feed generator. In commits prior to 5c4177441417 passing some special values to the filter and filterout parameters can cause an abnormally high CPU. This results in an impact on the performance of the servers and RSSHub services which may lead to a denial of service. This issue has been fixed in commit 5c4177441417 and all users are advised to upgrade. There are no known workarounds for this issue.

References

Affected packages

Git / github.com/diygod/rsshub

Affected ranges

Type
GIT
Repo
https://github.com/diygod/rsshub
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Fixed