-
CVSS Score
-Basic Information
CVE ID
-
GHSA ID
-
EPSS Score
-
CWE
-
Published
-
Updated
-
KEV Status
-
Technology
-
| Package Name | Ecosystem | Vulnerable Versions | First Patched Version |
|---|---|---|---|
| asciidoctor | rubygems | < 1.5.8 | 1.5.8 |
The vulnerability description explicitly identifies Parser.next_block as the source of the infinite loop. The GitHub issue (#2888) confirms the loop structure and regex mismatch issue. The CWE-835 classification matches the unreachable exit condition in the loop. While the exact file path is inferred from Ruby gem conventions, the function name and vulnerability mechanism are corroborated by all sources (CVE, GHSA, and issue tracker).
Ongoing coverage of React2Shell