Description
A ReDoS (regular expression denial of service) flaw was found in the @progfay/scrapbox-parser package before 6.0.3 for Node.js.
Remediation
References
https://github.com/progfay/scrapbox-parser/pull/519
https://github.com/progfay/scrapbox-parser/pull/539
https://github.com/progfay/scrapbox-parser/pull/540
https://security.netapp.com/advisory/ntap-20210326-0002/
Related Vulnerabilities
CVE-2020-13920 Vulnerability in maven package org.apache.activemq:activemq-core
CVE-2020-7614 Vulnerability in npm package npm-programmatic
CVE-2022-31051 Vulnerability in npm package semantic-release
CVE-2022-25926 Vulnerability in npm package window-control
CVE-2021-21345 Vulnerability in maven package com.thoughtworks.xstream:xstream