Description
In js/parts/SvgRenderer.js in Highcharts JS before 6.1.0, the use of backtracking regular expressions permitted an attacker to conduct a denial of service attack against the SVGRenderer component, aka ReDoS.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2008-2592 Vulnerability (CVE-2008-2592)
Moodle Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2016-2157)
WordPress Plugin Events Made Easy Cross-Site Scripting (2.2.23)
WordPress Plugin Popup Maker-Popup for opt-ins, lead gen, & more Security Bypass (1.7.29)
WordPress Plugin User Role Editor Cross-Site Scripting (4.37)