Description
A ReDoS (regular expression denial of service) flaw was found in the @progfay/scrapbox-parser package before 6.0.3 for Node.js.
Remediation
References
https://github.com/progfay/scrapbox-parser/pull/519
https://github.com/progfay/scrapbox-parser/pull/539
https://github.com/progfay/scrapbox-parser/pull/540
https://security.netapp.com/advisory/ntap-20210326-0002/
Related Vulnerabilities
CVE-2023-25158 Vulnerability in maven package org.geotools.jdbc:gt-jdbc-postgis
CVE-2020-1960 Vulnerability in maven package org.apache.flink:flink-metrics-core
CVE-2019-17573 Vulnerability in maven package org.apache.cxf:cxf-rt-transports-http
CVE-2022-36893 Vulnerability in maven package org.jenkins-ci.plugins:rpmsign-plugin