UNKNOWN npm
Regular Expression Denial of Service in marked
GHSA-ch52-vgq2-943f
Published · Modified
Description
Affected versions of marked are vulnerable to Regular Expression Denial of Service (ReDoS). The _label subrule may significantly degrade parsing performance of malformed input.
Recommendation
Upgrade to version 0.7.0 or later.
References
Ready to move
Start Securing
Free, no credit card | First findings in minutes