Lucene search

K
osvGoogleOSV:CVE-2021-43307
HistoryJun 02, 2022 - 2:15 p.m.

CVE-2021-43307

2022-06-0214:15:30
Google
osv.dev
9

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

37.0%

An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the semver-regex npm package, when an attacker is able to supply arbitrary input to the test() method

6.8 Medium

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

37.0%