CVE-2026-92114

Summary

A vulnerability was identified in a2ui-project a2ui up to 0.10.6. Affected is an unknown function of the file renderers/web_core/src/v0_9/basic_catalog/functions/safe_regex.ts of the component Basic Catalog. Such manipulation leads to inefficient regular expression complexity. The attack can be launched remotely.

Affected Software

VendorProductVersion RangeStatus
a2ui-projecta2ui0.10.0affected
a2ui-projecta2ui0.10.1affected
a2ui-projecta2ui0.10.2affected
a2ui-projecta2ui0.10.3affected
a2ui-projecta2ui0.10.4affected
a2ui-projecta2ui0.10.5affected
a2ui-projecta2ui0.10.6affected

Weaknesses

  • CWE-1333: Inefficient Regular Expression Complexity
  • CWE-400: Resource Consumption

References