Vulnerabilities/

Regular Expression Denial of Service in dat.gui

Severity:
High

Description

All versions of package dat.gui are vulnerable to Regular Expression Denial of Service (ReDoS) via specifically crafted rgb and rgba values.

Recommendation

No fix is available yet. Followings are affected versions:

References

Related Issues

Tags:
npm
dat.gui
Anything's wrong? Let us know Last updated on February 01, 2023

This issue is available in SmartScanner Professional

See Pricing