Vulnerabilities/

Vercel ms Inefficient Regular Expression Complexity vulnerability

Severity:
Medium

Description

A vulnerability, which was classified as problematic, has been found in vercel ms up to 1.x. This issue affects the function parse of the file index.js. The manipulation of the argument str leads to inefficient regular expression complexity. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

Recommendation

Update the ms package to the latest compatible version. Followings are version details:

References

Related Issues

Tags:
npm
ms
Anything's wrong? Let us know Last updated on October 20, 2023

This issue is available in SmartScanner Professional

See Pricing