The Odoo Community Association (OCA) dbfilter_from_header module makes Odoo 8.x, 9.x, 10.x, and 11.x vulnerable to ReDoS (regular expression denial of service) under certain circumstances.
2019-07-05T20:15:13.907
2024-11-21T03:49:41.863
Modified
CVSSv3.0: 7.5 (HIGH)
AV:N/AC:L/Au:N/C:N/I:N/A:P
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | odoo | odoo | 8.0 | Yes |
Application | odoo | odoo | 8.0 | Yes |
Application | odoo | odoo | 9.0 | Yes |
Application | odoo | odoo | 9.0 | Yes |
Application | odoo | odoo | 10.0 | Yes |
Application | odoo | odoo | 10.0 | Yes |
Application | odoo | odoo | 11.0 | Yes |
Application | odoo | odoo | 11.0 | Yes |