Vulnerabilities/

Regular Expression Denial of Service in hawk

Severity:
High

Description

Versions of hawk prior to 3.1.3, or 4.x prior to 4.1.1 are affected by a regular expression denial of service vulnerability related to excessively long headers and URI’s.

Recommendation

Update the hawk package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
hawk
Anything's wrong? Let us know Last updated on April 11, 2023