Описание
The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the enclosure regular expression.
A vulnerability was found in the glob-parent package. Affected versions of this package are vulnerable to Regular expression Denial of Service (ReDoS) attacks, affecting system availability.
Отчет
The glob-parent package is a transitive dependency and this is not used directly in any of the Red Hat products. Hence, the impact is reduced to Moderate.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Migration Toolkit for Containers | rhmtc/openshift-migration-ui-rhel8 | Not affected | ||
Migration Toolkit for Virtualization | migration-toolkit-virtualization/mtv-ui-rhel8 | Fix deferred | ||
OpenShift Developer Tools and Services | odo | Not affected | ||
OpenShift Pipelines | openshift-pipelines/pipelines-hub-ui-rhel8 | Affected | ||
OpenShift Service Mesh 2 | openshift-service-mesh/kiali-rhel8 | Will not fix | ||
OpenShift Service Mesh 2.1 | openshift-service-mesh/kiali-rhel8 | Will not fix | ||
OpenShift Service Mesh 2.1 | servicemesh-grafana | Will not fix | ||
OpenShift Service Mesh 2.1 | servicemesh-prometheus | Will not fix | ||
Red Hat Advanced Cluster Management for Kubernetes 2 | rhacm2/console-rhel8 | Not affected | ||
Red Hat Advanced Cluster Management for Kubernetes 2 | rhacm2/search-api-rhel8 | Not affected |
Показывать по
Дополнительная информация
Статус:
EPSS
7.5 High
CVSS3
Связанные уязвимости
The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the enclosure regular expression.
The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular expression denial of service) attacks against the enclosure regular expression.
The glob-parent package before 6.0.1 for Node.js allows ReDoS (regular ...
glob-parent 6.0.0 vulnerable to Regular Expression Denial of Service
ELSA-2023-1583: nodejs:18 security, bug fix, and enhancement update (MODERATE)
EPSS
7.5 High
CVSS3