yeoman / doctor

Detect potential issues with users system that could prevent Yeoman from working correctly
http://yeoman.io
BSD 2-Clause "Simplified" License
61 stars 16 forks source link

semver version vulnerability issue #62

Open himanshs opened 1 year ago

himanshs commented 1 year ago

In project scan we are getting vulnerability issue for semver version "Versions of the package semver before 7.5.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via the function new Range, when untrusted user data is provided as a range."

Please update the semver version > 7.5.2.