Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hvxq-j2r4-4jm8

Опубликовано: 03 сент. 2020
Источник: github
Github: Прошло ревью

Описание

Regular Expression Denial of Service in sql-injection

All versions of sql-injection are vulnerable to Regular Expression Denial of Service. The package processes a request's body with regular expressions that may take exponentially longer to execute for large inputs.

Recommendation

No fix is currently available. Consider using an alternative package until a fix is made available.

Пакеты

Наименование

sql-injection

npm
Затронутые версииВерсия исправления

>= 0.0.0

Отсутствует