PT-2024-19365 · Unknown · Sheetjs Community Edition

·

CVE-2024-22363

·

Published

2024-04-05

·

Updated

2026-07-09

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions SheetJS Community Edition versions prior to 0.20.2
Description The issue is related to a Regular Expression Denial of Service (ReDoS) in the SheetJS Community Edition. It is estimated that over 2,000,000 devices are potentially affected due to the high number of weekly downloads.
Recommendations For versions prior to 0.20.2, update to version 0.20.2 or later to resolve the issue. At the moment, there is no other information about additional mitigation measures.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-22363
GHSA-5PGG-2G8V-P4X9

Affected Products

Sheetjs Community Edition