sass / node-sass-middleware

connect middleware extracted from node-sass
MIT License
262 stars 84 forks source link

Vulnerability node-sass-middleware > node-sass > meow > trim-newlines #144

Closed deuexpo closed 2 years ago

deuexpo commented 3 years ago

Version: node-sass-middleware@0.11.0 How to reproduce: $ npm i node-sass-middleware $ npm audit

                   === npm audit security report ===                        

                             Manual Review
         Some vulnerabilities require your attention to resolve

      Visit https://go.npm.me/audit-guide for additional guidance

High Regular Expression Denial of Service

Package trim-newlines

Patched in >=3.0.1 <4.0.0 || >=4.0.1

Dependency of node-sass-middleware

Path node-sass-middleware > node-sass > meow > trim-newlines

More info https://npmjs.com/advisories/1753

found 1 high severity vulnerability in 1122 scanned packages 1 vulnerability requires manual review. See the full report for details.