Описание
Regular Expression Denial of Service in no-case
Affected versions of no-case are vulnerable to a regular expression denial of service when parsing untrusted user input.
Recommendation
Update to version 2.3.2 or later.
Пакеты
Наименование
no-case
npm
Затронутые версииВерсия исправления
< 2.3.2
2.3.2
Связанные уязвимости
CVSS3: 7.5
redhat
больше 7 лет назад
The no-case module is vulnerable to regular expression denial of service. When malicious untrusted user input is passed into no-case it can block the event loop causing a denial of service condition.
CVSS3: 7.5
nvd
больше 7 лет назад
The no-case module is vulnerable to regular expression denial of service. When malicious untrusted user input is passed into no-case it can block the event loop causing a denial of service condition.