QID 982354
QID 982354: Nodejs (npm) Security Update for forms (GHSA-c56f-grv3-gpfr)
The package forms before 1.3.2 are vulnerable to Regular Expression Denial of Service (ReDoS) via email validation.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-c56f-grv3-gpfr for updates pertaining to this vulnerability.
Vendor References
- GHSA-c56f-grv3-gpfr -
github.com/advisories/GHSA-c56f-grv3-gpfr
CVEs related to QID 982354
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-c56f-grv3-gpfr | forms |
|