Описание
Regular expression denial of service in markdown-link-extractor
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the markdown-link-extractor npm package, when an attacker is able to supply arbitrary input to the module's exported function
Пакеты
Наименование
markdown-link-extractor
npm
Затронутые версииВерсия исправления
< 3.0.2
3.0.2
Наименование
markdown-link-extractor
npm
Затронутые версииВерсия исправления
>= 4.0.0, < 4.0.1
4.0.1
Связанные уязвимости
CVSS3: 5.9
nvd
больше 3 лет назад
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the markdown-link-extractor npm package, when an attacker is able to supply arbitrary input to the module's exported function