Inefficient Regular Expression Complexity in nth-check #3

Closed
opened 2022-05-19 04:41:32 +00:00 by argoyle · 0 comments
argoyle commented 2022-05-19 04:41:32 +00:00 (Migrated from gitlab.com)

⚠️ dependabot-gitlab has detected security vulnerability for nth-check in path: /, manifest_file: /package.json but was unable to update it! ⚠️

Package Severity Affected versions Patched versions IDs
nth-check (NPM) MODERATE < 2.0.1 2.0.1 GHSA-rp65-9cf3-cjxr,CVE-2021-3803

Description

nth-check is vulnerable to Inefficient Regular Expression Complexity

References

⚠️ `dependabot-gitlab` has detected security vulnerability for `nth-check` in path: `/`, manifest_file: `/package.json` but was unable to update it! ⚠️ * https://github.com/advisories/GHSA-rp65-9cf3-cjxr | Package | Severity | Affected versions | Patched versions | IDs | |-----------------|----------|-------------------|------------------|---------------------------------------| | nth-check (NPM) | MODERATE | < 2.0.1 | 2.0.1 | `GHSA-rp65-9cf3-cjxr`,`CVE-2021-3803` | # Description nth-check is vulnerable to Inefficient Regular Expression Complexity # References * https://nvd.nist.gov/vuln/detail/CVE-2021-3803 * https://github.com/fb55/nth-check/commit/9894c1d2010870c351f66c6f6efcf656e26bb726 * https://huntr.dev/bounties/8cf8cc06-d2cf-4b4e-b42c-99fafb0b04d0 * https://github.com/advisories/GHSA-rp65-9cf3-cjxr
argoyle (Migrated from gitlab.com) closed this issue 2022-12-05 13:01:17 +00:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: dancefinder/dancefinder-app#3