Unitech / pm2

Node.js Production Process Manager with a built-in Load Balancer.
https://pm2.keymetrics.io/docs/usage/quick-start/
Other
41.44k stars 2.62k forks source link

Snyk Code Analysis - Regular Expression Denial of Service (ReDoS) Vulnerability #5584

Open dev-script opened 1 year ago

dev-script commented 1 year ago

Issue: word-wrap@1.2.3 Introduced through: pm2@5.3.0 › @pm2/agent@2.0.1 › proxy-agent@5.0.0 › pac-proxy-agent@5.0.0 › pac-resolver@5.0.1 › degenerator@3.0.3 › escodegen@1.14.3 › optionator@0.8.3 › word-wrap@1.2.3

Attaching screenshot of snyk report for reference

Screenshot 2023-04-11 at 12 42 54 PM

Please suggest way how i can fix it

eliransu commented 1 year ago

same for vm2 a package within pm2

boxexchanger commented 1 year ago

+1

codemasternode commented 1 year ago

+1