Description
All versions of package trim-off-newlines are vulnerable to Regular Expression Denial of Service (ReDoS) via string processing.
Remediation
References
https://github.com/stevemao/trim-off-newlines/blob/master/index.js%23L6
https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-1567197
https://snyk.io/vuln/SNYK-JS-TRIMOFFNEWLINES-1296850
Related Vulnerabilities
CVE-2017-1000114 Vulnerability in maven package org.datadog.jenkins.plugins:datadog
CVE-2019-10432 Vulnerability in maven package org.jenkins-ci.plugins:htmlpublisher
CVE-2018-19056 Vulnerability in maven package org.webjars.bower:editor.md
CVE-2019-10757 Vulnerability in npm package knex
CVE-2016-11023 Vulnerability in maven package org.odata4j:odata4j-core