Description
All versions of package trim-off-newlines are vulnerable to Regular Expression Denial of Service (ReDoS) via string processing.
Remediation
References
https://github.com/stevemao/trim-off-newlines/blob/master/index.js%23L6
https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-1567197
https://snyk.io/vuln/SNYK-JS-TRIMOFFNEWLINES-1296850
Related Vulnerabilities
CVE-2016-10677 Vulnerability in npm package google-closure-tools-latest
CVE-2023-1436 Vulnerability in maven package org.codehaus.jettison:jettison
CVE-2017-16198 Vulnerability in npm package ritp
CVE-2018-1000008 Vulnerability in maven package org.jvnet.hudson.plugins:pmd
CVE-2020-13935 Vulnerability in maven package org.apache.tomcat:tomcat-websocket