Description
A ReDoS (regular expression denial of service) flaw was found in the @progfay/scrapbox-parser package before 6.0.3 for Node.js.
Remediation
References
https://github.com/progfay/scrapbox-parser/pull/519
https://github.com/progfay/scrapbox-parser/pull/539
https://github.com/progfay/scrapbox-parser/pull/540
https://security.netapp.com/advisory/ntap-20210326-0002/
Related Vulnerabilities
CVE-2023-38905 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core
CVE-2023-48241 Vulnerability in maven package org.xwiki.platform:xwiki-platform-search-solr-query
CVE-2020-28168 Vulnerability in npm package axios
CVE-2022-26260 Vulnerability in npm package simple-plist
CVE-2020-26870 Vulnerability in maven package org.webjars.npm:dompurify