Vulnerabilities/

(ReDoS) Regular Expression Denial of Service in tf2-item-format

Severity:
High

Description

Versions of tf2-item-format since at least 4.2.6 are vulnerable to a Regular Expression Denial of Service (ReDoS) attack when parsing crafted user input.

Recommendation

Update the tf2-item-format package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
tf2-item-format
Anything's wrong? Let us know Last updated on August 02, 2024