Vulnerabilities > Momentjs
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2023-01-04 | CVE-2023-22467 | Unspecified vulnerability in Momentjs Luxon Luxon is a library for working with dates and times in JavaScript. | 7.5 |
2022-07-06 | CVE-2022-31129 | moment is a JavaScript date library for parsing, validating, manipulating, and formatting dates. | 7.5 |
2022-04-04 | CVE-2022-24785 | Path Traversal: 'dir/../../filename' vulnerability in multiple products Moment.js is a JavaScript date library for parsing, validating, manipulating, and formatting dates. | 7.5 |
2018-03-04 | CVE-2017-18214 | Resource Exhaustion vulnerability in multiple products The moment module before 2.19.3 for Node.js is prone to a regular expression denial of service via a crafted date string, a different vulnerability than CVE-2016-4055. | 7.5 |
2017-01-23 | CVE-2016-4055 | Resource Exhaustion vulnerability in multiple products The duration function in the moment package before 2.11.2 for Node.js allows remote attackers to cause a denial of service (CPU consumption) via a long string, aka a "regular expression Denial of Service (ReDoS)." | 6.5 |