Vulnerabilities/

Regular Expression Denial of Service in browserslist

Severity:
Medium

Description

The package browserslist from 4.0.0 and before 4.16.5 are vulnerable to Regular Expression Denial of Service (ReDoS) during parsing of queries.

Recommendation

Update the browserslist package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
browserslist
Anything's wrong? Let us know Last updated on August 17, 2023

This issue is available in SmartScanner Professional

See Pricing