Vulnerability CVE-2022-37620


Published: 2022-10-31

Description:
A Regular Expression Denial of Service (ReDoS) flaw was found in kangax html-minifier 4.0.0 via the candidate variable in htmlminifier.js.

 References:
https://github.com/kangax/html-minifier/issues/1135
https://github.com/kangax/html-minifier/blob/51ce10f4daedb1de483ffbcccecc41be1c873da2/src/htmlminifier.js#L294
https://github.com/kangax/html-minifier/blob/51ce10f4daedb1de483ffbcccecc41be1c873da2/src/htmlminifier.js#L1338

Copyright 2026, cxsecurity.com

 

Back to Top