CVE-2021-23446


Regular Expression Denial of Service (ReDoS)

The package handsontable before 10.0.0; the package handsontable from 0 and before 10.0.0 are vulnerable to Regular Expression Denial of Service (ReDoS) in Handsontable.helper.isNumeric function.



We have discovered 68 live websites that are affected by CVE-2021-23446.

Contact us to get more info




Affected Software

Product  Handsontable
Category JavaScript Libraries
Vulnerable Versions
  • from 0 before 10
Total Vulnerable Versions35
Vulnerable Domains68 live websites (89.47% of Handsontable install base)


Distribution by Website Rank

The diagram provides a graphic representation of the correlation between the occurrence of CVE-2021-23446 and the relative popularity of websites


Details

  • Published - Sep 29, 2021
  • Updated - Sep 29, 2021

Credits

  • Unknown




Countries

United States41 websites



France4 websites
GB4 websites
2 websites
Germany2 websites
Spain2 websites
Italy2 websites
Argentina1 websites
Austria1 websites
Australia1 websites

TLDs

.com39 websites
.fr4 websites
.co.uk3 websites
.es2 websites
.org2 websites
.net2 websites
.at1 websites
.com.au1 websites
.com.br1 websites
.de1 websites

Vulnerable Versions

Vulnerable versions are highlighted in red


Geographical Distribution

The distribution of websites across the globe that are exposed to CVE-2021-23446 through included software libraries and plugins.



References


Websites affected by CVE-2021-23446

Top websites that are affected by CVE-2021-23446. Please click on the "Contact us" button above to get more information.
DomainCountryRankContacts
***********.***.gov United States***,***
*******.com Japan***,***
*******.com United States*,***,***
***.*******.com United States*,***,***
*************.com United States*,***,***
*********.******.com China*,***,***
***.**.kr Korea, South*,***,***
***.*******.com United States*,***,***
***.********.com United States*,***,***
***.********.com United States*,***,***
See full domain list