Vulnerabilities/

ReDOS vulnerabities: multiple grammars (GHSA-7wwv-vh3v-89cq)

Severity:
Medium

Description

oswasp:

The Regular expression Denial of Service (ReDoS) is a Denial of Service attack, that exploits the fact that most Regular Expression implementations may reach extreme situations that cause them to work very slowly (exponentially related to input size).

Recommendation

Update the highlight.js package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
highlight.js
Anything's wrong? Let us know Last updated on January 09, 2023

This issue is available in SmartScanner Professional

See Pricing