Project Subscriptions
No data.
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Thu, 13 Aug 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Regular Expression Denial of Service in RubyLLM::Utils.underscore for Ruby 3.1.x |
Thu, 13 Aug 2026 18:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-918 |
Thu, 13 Aug 2026 17:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Regular Expression Denial of Service in RubyLLM::Utils.underscore for Ruby 3.1.x | |
| Weaknesses | CWE-918 |
Thu, 13 Aug 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-1333 | |
| Metrics |
cvssV3_1
|
Thu, 13 Aug 2026 14:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | crmne/ruby_llm at commit fa6f279847d6d7027814539d9c0dfc3bbdfd2a83 contains a polynomial-time regular expression denial-of-service condition in RubyLLM::Utils.underscore on Ruby 3.1.x. A very long crafted class, agent, or tool name can cause excessive CPU consumption and a denial of service. | |
| References |
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2026-08-13T15:41:43.294Z
Reserved: 2026-07-30T00:00:00.000Z
Link: CVE-2026-67991
Updated: 2026-08-13T15:41:32.989Z
Status : Received
Published: 2026-08-13T14:17:11.717
Modified: 2026-08-13T16:18:48.893
Link: CVE-2026-67991
No data.
OpenCVE Enrichment
Updated: 2026-08-13T20:15:03Z