Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-76985
HistoryJun 09, 2022 - 12:00 a.m.

npm semver-regex denial of service vulnerability

2022-06-0900:00:00
China National Vulnerability Database
www.cnvd.org.cn
25
security vulnerability
denial of service
semver-regex

EPSS

0.001

Percentile

36.8%

npm semver-regex is a regular expression used to match semver versions. semver-regex versions prior to 3.1.4 and versions 4.0.0 (inclusive) through 4.0.2 have a denial of service vulnerability that stems from not properly handling incoming error messages, which can be exploited to cause a denial of service of the application.

EPSS

0.001

Percentile

36.8%