Description
A ReDoS (regular expression denial of service) flaw was found in the @progfay/scrapbox-parser package before 6.0.3 for Node.js.
Remediation
References
https://github.com/progfay/scrapbox-parser/pull/519
https://github.com/progfay/scrapbox-parser/pull/539
https://github.com/progfay/scrapbox-parser/pull/540
https://security.netapp.com/advisory/ntap-20210326-0002/
Related Vulnerabilities
CVE-2023-36665 Vulnerability in npm package protobufjs
CVE-2022-0401 Vulnerability in npm package w-zip
CVE-2021-3827 Vulnerability in maven package org.keycloak:keycloak-services
CVE-2022-22138 Vulnerability in npm package fast-string-search
CVE-2023-34092 Vulnerability in maven package org.webjars.npm:vite