@sideway/formula contains Regular Expression Denial of Service (ReDoS) Vulnerability #25
Reference in New Issue
Block a user
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
⚠️
dependabot-gitlabhas detected security vulnerability for@sideway/formulain path:/, manifest_file:/package.jsonbut was unable to update it! ⚠️GHSA-c2jc-4fpr-4vhg,CVE-2023-25166Description
Impact
User-provided strings to formula's parser might lead to polynomial execution time.
Patches
Users should upgrade to 3.0.1+.
Workarounds
None.
References