Description
A vulnerability was found in Braces versions prior to 2.3.1. Affected versions of this package are vulnerable to Regular Expression Denial of Service (ReDoS) attacks.
Remediation
References
https://bugzilla.redhat.com/show_bug.cgi?id=1547272
https://snyk.io/vuln/npm:braces:20180219
Related Vulnerabilities
CVE-2022-3171 Vulnerability in maven package com.google.protobuf:protobuf-kotlin-lite
CVE-2020-26870 Vulnerability in maven package org.webjars.npm:dompurify
CVE-2023-5104 Vulnerability in npm package nocodb
CVE-2023-44270 Vulnerability in maven package org.webjars.npm:postcss
CVE-2023-38905 Vulnerability in maven package org.jeecgframework.boot:jeecg-boot-base-core