itsKedar / TodoList_mern

0 stars 0 forks source link

CX: CVE-2021-3807 in Npm-ansi-regex and 5.0.0 @ TodoList_mern.main #27

Open itsKedar opened 2 years ago

itsKedar commented 2 years ago

Description

ansi-regex prior to 5.0.1 and 6.0.x prior to 6.0.1 is vulnerable to Inefficient Regular Expression Complexity

HIGH Vulnerable Package issue exists @ ansi-regex in branch main

Vulnerability ID: CVE-2021-3807

Package Name: ansi-regex

Severity: HIGH

CVSS Score: 7.5

Publish Date: 2021-09-17T07:15:00

Current Package Version: 5.0.0

Remediation Upgrade Recommendation: 5.0.1

Link To SCA

Reference – NVD link