Skip to content

Security alert #1

@danielbonifacio

Description

@danielbonifacio

Please, upgrade the braces dependency to version 2.3.1 or later, because of the moderate security alert.

Version of braces prior to 2.3.1 are vulnerable to Regular Expression Denial of Service (ReDoS). Untrusted input may cause catastrophic backtracking while matching regular expressions. This can cause the application to be unresponsive leading to Denial of Service.

Metadata

Metadata

Assignees

Labels

Type

No type

Projects

No projects

Milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions