minimatch Project minimatch 0.2.12 for Node.js

CPE Details

minimatch Project minimatch 0.2.12 for Node.js
0.2.12
2019-09-20
17h29 +00:00
2019-09-20
17h29 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:minimatch_project:minimatch:0.2.12:*:*:*:*:node.js:*:*

Informations

Vendor

minimatch_project

Product

minimatch

Version

0.2.12

Target Software

node.js

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2022-3517 2022-10-16 22h00 +00:00 A vulnerability was found in the minimatch package. This flaw allows a Regular Expression Denial of Service (ReDoS) when calling the braceExpand function with specific arguments, resulting in a Denial of Service.
7.5
High
CVE-2016-10540 2018-05-31 20h00 +00:00 Minimatch is a minimal matching utility that works by converting glob expressions into JavaScript `RegExp` objects. The primary function, `minimatch(path, pattern)` in Minimatch 3.0.1 and earlier is vulnerable to ReDoS in the `pattern` parameter.
7.5
High