QID 981841
QID 981841: Nodejs (npm) Security Update for ua-parser-js (GHSA-662x-fhqg-9p8v)
The package ua-parser-js before 0.7.22 are vulnerable to Regular Expression Denial of Service (ReDoS) via the regex for Redmi Phones and Mi Pad Tablets UA.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-662x-fhqg-9p8v for updates pertaining to this vulnerability.
Vendor References
- GHSA-662x-fhqg-9p8v -
github.com/advisories/GHSA-662x-fhqg-9p8v
CVEs related to QID 981841
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-662x-fhqg-9p8v | ua-parser-js |
|