{"id":"GHSA-3w8q-xq97-5j7x","summary":"Rhino has high CPU usage and potential DoS when passing specific numbers to `toFixed()` function","details":"When an application passed an attacker controlled float poing number into the `toFixed()` function, it might lead to high CPU consumption and a potential Denial of Service.\n\nSmall numbers go through this call stack: `NativeNumber.numTo \u003e DToA.JS_dtostr \u003e DToA.JS_dtoa \u003e DToA.pow5mult`\nwhere `pow5mult` attempts to raise `5` to a ridiculous power.\n\nExample code: `(4.47118444E-314).toFixed(2)`","aliases":["CVE-2025-66453"],"modified":"2025-12-04T16:43:21.780608Z","published":"2025-12-03T16:57:50Z","database_specific":{"nvd_published_at":"2025-12-03T20:16:26Z","cwe_ids":["CWE-400"],"severity":"LOW","github_reviewed":true,"github_reviewed_at":"2025-12-03T16:57:50Z"},"references":[{"type":"WEB","url":"https://github.com/mozilla/rhino/security/advisories/GHSA-3w8q-xq97-5j7x"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2025-66453"},{"type":"WEB","url":"https://github.com/mozilla/rhino/commit/2bcf4c43deace35f1f57d86377c6767b0608986e"},{"type":"PACKAGE","url":"https://github.com/mozilla/rhino"}],"affected":[{"package":{"name":"org.mozilla:rhino","ecosystem":"Maven","purl":"pkg:maven/org.mozilla/rhino"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"1.7.14.1"}]}],"versions":["1.7.10","1.7.11","1.7.11-RC1","1.7.11-RC2","1.7.12","1.7.13","1.7.14","1.7.14-RC1","1.7.6","1.7.7","1.7.7.1","1.7.7.2","1.7.8","1.7.8-RC1","1.7.9","1.7R3","1.7R4","1.7R5"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2025/12/GHSA-3w8q-xq97-5j7x/GHSA-3w8q-xq97-5j7x.json"}},{"package":{"name":"org.mozilla:rhino","ecosystem":"Maven","purl":"pkg:maven/org.mozilla/rhino"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"1.7.15"},{"fixed":"1.7.15.1"}]}],"versions":["1.7.15"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2025/12/GHSA-3w8q-xq97-5j7x/GHSA-3w8q-xq97-5j7x.json"}},{"package":{"name":"org.mozilla:rhino","ecosystem":"Maven","purl":"pkg:maven/org.mozilla/rhino"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"1.8.0"},{"fixed":"1.8.1"}]}],"versions":["1.8.0"],"database_specific":{"source":"https://github.com/github/advisory-database/blob/main/advisories/github-reviewed/2025/12/GHSA-3w8q-xq97-5j7x/GHSA-3w8q-xq97-5j7x.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:U"}]}