Vulnerabilities/

Chaijs/get-func-name vulnerable to ReDoS

Severity:
High

Description

The current regex implementation for parsing values in the module is susceptible to excessive backtracking, leading to potential DoS attacks.

Recommendation

Update the get-func-name package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
get-func-name
Anything's wrong? Let us know Last updated on November 06, 2023

This issue is available in SmartScanner Professional

See Pricing