QID 982617
QID 982617: Nodejs (npm) Security Update for dat.gui (GHSA-chwr-hf3w-c984)
All versions of package dat.gui are vulnerable to Regular Expression Denial of Service (ReDoS) via specifically crafted rgb and rgba values.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-chwr-hf3w-c984 for updates pertaining to this vulnerability.
Vendor References
- GHSA-chwr-hf3w-c984 -
github.com/advisories/GHSA-chwr-hf3w-c984
CVEs related to QID 982617
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-chwr-hf3w-c984 | dat.gui |
|