The Charset Project maintains a focused character-encoding library whose vulnerability profile reflects the parsing and resource-allocation demands of handling diverse character sets and encoding transformations. Disclosed issues center on uncontrolled resource consumption, a pattern consistent with the complexity of charset conversion logic and its role as a utility embedded in downstream applications and text-processing tools. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Charset Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-16098HIGH charset 1.0.0 and below are vulnerable to regular expression denial of service. Input of around 50k characters is required for a slow down of around 2 seconds. Unless node was comp | Jun 7, 2018 | 7.5 | 22 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Charset Project.
Media articles that mention a CVE ID that affects a product developed by Charset Project — matched by CVE ID, not by vendor name.