Description
semver-regex is vulnerable to Inefficient Regular Expression Complexity
Remediation
References
https://github.com/sindresorhus/semver-regex/commit/11c66245f4e1976dccc52977ed183696a21a3fd7
https://huntr.dev/bounties/006624e3-35ac-448f-aab9-7b5183f30e28
Related Vulnerabilities
CVE-2022-25898 Vulnerability in maven package org.webjars.npm:jsrsasign
CVE-2018-11651 Vulnerability in maven package org.graylog2:graylog2-server
CVE-2019-14540 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2022-29172 Vulnerability in maven package org.webjars.bower:auth0-lock
CVE-2023-40989 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-common