scripts icon indicating copy to clipboard operation
scripts copied to clipboard

apply_corrections.py is very vulnerable to regex denial of service

Open jesopo opened this issue 6 years ago • 0 comments

A user sharing a channel with you can do the following:

<jesopo> aaaaaaaaaaaaaaaa
<jesopo> s/(.*\w){16}//

and hang your weechat at 100% CPU

jesopo avatar Sep 09 '19 15:09 jesopo