Description
semver-regex is vulnerable to Inefficient Regular Expression Complexity
Remediation
References
https://github.com/sindresorhus/semver-regex/commit/11c66245f4e1976dccc52977ed183696a21a3fd7
https://huntr.dev/bounties/006624e3-35ac-448f-aab9-7b5183f30e28
Related Vulnerabilities
CVE-2018-8013 Vulnerability in maven package org.eclipse.birt.runtime:org.apache.batik.dom
CVE-2020-12648 Vulnerability in maven package org.webjars:tinymce
CVE-2021-44145 Vulnerability in maven package org.apache.nifi:nifi
CVE-2021-27290 Vulnerability in npm package ssri
CVE-2023-34478 Vulnerability in maven package org.apache.shiro:shiro-web