Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1761 | org.cyberneko.html is an html parser written in Java. The fork of `org.cyberneko.html` used by Nokogiri (Rubygem) raises a `java.lang.OutOfMemoryError` exception when parsing ill-formed HTML markup. Users are advised to upgrade to `>= 1.9.22.noko2`. Note: The upstream library `org.cyberneko.html` is no longer maintained. Nokogiri uses its own fork of this library located at https://github.com/sparklemotion/nekohtml and this CVE applies only to that fork. Other forks of nekohtml may have a similar vulnerability. |
Github GHSA |
GHSA-9849-p7jc-9rmv | org.nokogiri:nekohtml vulnerable to Uncontrolled Resource Consumption |
Wed, 23 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-04-23T18:40:37.485Z
Reserved: 2022-02-10T00:00:00.000Z
Link: CVE-2022-24839
Updated: 2024-08-03T04:20:50.515Z
Status : Modified
Published: 2022-04-11T22:15:07.440
Modified: 2024-11-21T06:51:12.700
Link: CVE-2022-24839
OpenCVE Enrichment
No data.
EUVD
Github GHSA