WeDoSoftware / status-check

0 stars 1 forks source link

A new vulnerability was discovered: CVE-2020-7754 #289

Open debricked[bot] opened 3 years ago

debricked[bot] commented 3 years ago

This affects the package npm-user-validate before 1.0.1. The regex that validates user emails took exponentially longer to process long input strings beginning with @ characters.

Read more at Debricked: https://app.debricked.com/en/service/vulnerability/185071