Vulnerabilities > Ecstatic Project > Ecstatic > 1.1.3

DATE CVE VULNERABILITY TITLE RISK
2018-05-29 CVE-2015-9242 Improper Input Validation vulnerability in Ecstatic Project Ecstatic
Certain input strings when passed to new Date() or Date.parse() in ecstatic node module before 1.4.0 will cause v8 to raise an exception.
network
low complexity
ecstatic-project CWE-20
5.0
2017-12-14 CVE-2016-10703 Improper Input Validation vulnerability in Ecstatic Project Ecstatic
A regular expression Denial of Service (DoS) vulnerability in the file lib/ecstatic.js of the ecstatic npm package, before version 2.0.0, allows a remote attacker to overload and crash a server by passing a maliciously crafted string.
network
low complexity
ecstatic-project CWE-20
7.8