Description
The package ua-parser-js before 0.7.23 are vulnerable to Regular Expression Denial of Service (ReDoS) in multiple regexes (see linked commit for more info).
Remediation
References
Related Vulnerabilities
MySQL CVE-2018-3284 Vulnerability (CVE-2018-3284)
WordPress Plugin Google Analytics Top Content Widget Cross-Site Scripting (1.5.6)
WordPress Plugin Lightbox Multiple Unspecified Vulnerabilities (2.0.7)
Oracle Database Server CVE-2019-2753 Vulnerability (CVE-2019-2753)
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2011-2202)