OSV 1.4.0 · github-reviewed · 修改于 2021-02-26 01:20
发布时间
2019-06-20 22:32
GitHub 审查时间
2019-06-20 22:17
NVD 发布时间
—
源文件
advisories/github-reviewed/2019/06/GHSA-qx4v-6gc5-f2vv/GHSA-qx4v-6gc5-f2vv.json
A Regular Expression Denial of Service vulnerability was discovered in esm before 3.1.0. The issue is that esm's find-indexes is using the unescaped identifiers in a regex, which, in this case, causes an infinite loop.