LOW
GHSA-4x5v-gmq8-25ch
Regular expression denial of service in semver-regex
Quick fix
GHSA-4x5v-gmq8-25ch — semver-regex: upgrade to the fixed version with the command below.
npm install semver-regex@3.1.4Details
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the semver-regex npm package, when an attacker is able to supply arbitrary input to the test() method
Are you affected?
Enter the version of the package you're using.