CyberRota Analysis
AI-GeneratedNokogiri versions prior to 1.14.3, when using the bundled libxml2, are vulnerable to NULL pointer dereferences during XML Schema processing, which can be exploited by attackers through crafted XML schemas to cause denial of service via segmentation faults. This vulnerability poses a significant risk to applications relying on Nokogiri for XML processing, particularly those handling untrusted XML input. Developers and organizations utilizing Nokogiri should prioritize upgrading to version 1.14.3 or later to mitigate this high-severity risk.
CVE
CVE-2023-54354
Severity
UNKNOWN
CVSS
N/A
EPSS
N/A
Original NVD Description
Rejected reason: This CVE ID has been rejected as a duplicate.
Related CVEs
Other vulnerabilities affecting the same vendor(s)