hutool-core v5.8.23 was discovered to contain an infinite loop in the StrSplitter.splitByRegex function. This vulnerability allows attackers to cause a Denial of Service (DoS) via manipulation of the first two parameters.
{
"extracted_events": [
{
"introduced": "0"
},
{
"fixed": "5.8.24"
}
],
"cpe": "cpe:2.3:a:hutool:hutool:*:*:*:*:*:*:*:*",
"source": "CPE_FIELD"
}