CVE-2021-23343 – All versions of package path-parse are vulnerable to Regular Expression Denial of Service …

Vuln ID: CVE-2021-23343

Published:  2021-05-04  09:15:07Z

Description: All versions of package path-parse are vulnerable to Regular Expression Denial of Service (ReDoS) via splitDeviceRe, splitTailRe, and splitPathRe regular expressions. ReDoS exhibits polynomial worst-case time complexity.

Source: NVD.NIST.GOV

 


Date:

Categorie(s):

Tag(s):