Skip to content

Fix ReDoS bugs#371

Merged
bdewilde merged 1 commit into
chartbeat-labs:developfrom
kevinbackhouse:fix-redos
Mar 17, 2023
Merged

Fix ReDoS bugs#371
bdewilde merged 1 commit into
chartbeat-labs:developfrom
kevinbackhouse:fix-redos

Conversation

@kevinbackhouse

Copy link
Copy Markdown
Contributor

Fixes: #346

Remove some superfluous + characters to fix two ReDoS bugs.

@bdewilde bdewilde changed the base branch from main to develop March 17, 2023 22:43
@bdewilde

Copy link
Copy Markdown
Collaborator

Hi @kevinbackhouse , thank you very much for this fix! I'm pretty sure I can follow what these changes do to the regex behavior. Looks like the GitHub Actions CI got borked, but I checked out your changes and confirmed that all relevant tests all pass. Going to merge this in as-is!

@bdewilde bdewilde merged commit ed48b44 into chartbeat-labs:develop Mar 17, 2023
@bdewilde bdewilde mentioned this pull request Apr 3, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

GHSL-2021-109

2 participants