CVE-2021-43308
02.06.2022, 14:15
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the markdown-link-extractor npm package, when an attacker is able to supply arbitrary input to the module's exported functionEnginsight
Vendor | Product | Version |
---|---|---|
markdown-link-extractor_project | markdown-link-extractor | 𝑥 < 3.0.2 |
markdown-link-extractor_project | markdown-link-extractor | 4.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration