WhisperX tag archive

#CWE-1333

This page collects WhisperX intelligence signals tagged #CWE-1333. It is designed for humans, search engines, and AI agents: each item links to a canonical source-backed record with sector, source, timestamp, credibility, and exportable structured data.

Latest Signals (2)

The Lab · 2026-04-25 12:54:08 · GitHub Issues

1. Security Review Flags Potential ReDoS Vulnerability in Nexus-Agents Base64 Detection Regex

A code review conducted under internal security protocol MED #11 has identified a potential Regular Expression Denial of Service (ReDoS) vulnerability in the Nexus-Agents input sanitization module. The flaw resides in `packages/nexus-agents/src/security/input-sanitizer.ts` at line 103, where base64 detection relies on ...

The Lab · 2026-05-07 19:31:40 · GitHub Issues

2. LightRAG OpenSearch Backend Exposed to Wildcard DoS via Unsanitized Search Input (CWE-89)

A security researcher has identified and patched a vulnerability in LightRAG's OpenSearch integration that allows authenticated users to trigger denial-of-service conditions by injecting pathological wildcard patterns into search queries. The flaw, traced to improper input handling in `lightrag/kg/opensearch_impl.py`, ...