ssri Project ssri 7.1.0 for Node.js

CPE Details

ssri Project ssri 7.1.0 for Node.js
7.1.0
2021-04-09
10h55 +00:00
2021-04-21
11h00 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:ssri_project:ssri:7.1.0:*:*:*:*:node.js:*:*

Informations

Vendor

ssri_project

Product

ssri

Version

7.1.0

Target Software

node.js

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-27290 2021-03-12 20h47 +00:00 ssri 5.2.2-8.0.0, fixed in 8.0.1, processes SRIs using a regular expression which is vulnerable to a denial of service. Malicious SRIs could take an extremely long time to process, leading to denial of service. This issue only affects consumers using the strict option.
7.5
High