Sunbird-Ed SunbirdEd-portal Inefficient Regular Expression Complexity Vulnerability

Vulnerability

A vulnerability related to inefficient regular expression complexity has been identified in Sunbird-Ed SunbirdEd-portal version 1.13.4. This issue can lead to excessive resource consumption, potentially causing a denial-of-service condition when the application processes maliciously crafted input.

Impact

Exploitation of this vulnerability can result in excessive resource usage, leading to a denial-of-service condition.

Reproduction

The vulnerability can be reproduced by inputting data that is specifically designed to exploit regular expression processing in a way that consumes excessive resources. This can be done by crafting input that includes complex patterns which the application's regular expression engine must process, thereby causing increased CPU or memory usage. The issue arises in Sunbird-Ed SunbirdEd-portal version 1.13.4.

Added: Mar 9, 2026, 8:20 PM
Updated: Mar 9, 2026, 8:20 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
2.5
exploitability
8.4
remediation
0.0
relevance
3.7
threat
4.8
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.