leepowelldev / mongoose-validator

Validators for mongoose models utilising validator.js
MIT License
378 stars 43 forks source link

ReDoS in validator #46

Closed jasinner closed 6 years ago

jasinner commented 6 years ago

Ensure we're using validator 9.4.1 or later to avoid Regular Expression Denial of Service (ReDoS) in validator dependency.

https://snyk.io/vuln/npm:validator:20180218

jasinner commented 6 years ago

https://github.com/leepowellcouk/mongoose-validator/pull/47

leepowelldev commented 6 years ago

Merged. Thanks 👍