ssri Project ssri 5.2.3 for Node.js

CPE Details

ssri Project ssri 5.2.3 for Node.js
5.2.3
2019-08-02
10h46 +00:00
2019-08-02
10h46 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:ssri_project:ssri:5.2.3:*:*:*:*:node.js:*:*

Informations

Vendor

ssri_project

Product

ssri

Version

5.2.3

Target Software

node.js

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-27290 2021-03-12 20h47 +00:00 ssri 5.2.2-8.0.0, fixed in 8.0.1, processes SRIs using a regular expression which is vulnerable to a denial of service. Malicious SRIs could take an extremely long time to process, leading to denial of service. This issue only affects consumers using the strict option.
7.5
High