Aqua Vulnerability Database
Get Demo
Vulnerabilities
Misconfiguration
Runtime Security
Compliance
CVE Vulnerabilities
CVE-2021-3649
Published:
Jul 16, 2021
| Modified:
Jul 29, 2022
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
Additional information
NVD
https://nvd.nist.gov/vuln/detail/CVE-2021-3649
CWE
https://cwe.mitre.org/data/definitions/NVD-Other.html
chatwoot is vulnerable to Inefficient Regular Expression Complexity
Affected Software
Name
Vendor
Start Version
End Version
Chatwoot
Chatwoot
*
1.18.0 (excluding)
References
https://github.com/chatwoot/chatwoot/commit/aa7db90cd2d23dbcf22a94f1e4c100dd909e2172
https://huntr.dev/bounties/1625088985607-chatwoot/chatwoot
Aqua Container Security