VDB
Sign up
HIGH7.5

GHSA-rgqx-226f-2xp4

steal Inefficient Regular Expression Complexity vulnerability via string variable

Details

A Regular Expression Denial of Service (ReDoS) flaw was found in stealjs steal 2.2.4 via the string variable in babel.js.

Are you affected?

Enter the version of the package you're using.

Affected packages

npm/steal
Introduced in: 0

No fixed version published yet for steal (npm). Pin to a known-safe version or switch to an alternative.

References