QID 982913
QID 982913: Nodejs (npm) Security Update for html-parse-stringify2 (GHSA-545q-3fg6-48m7)
This affects the package html-parse-stringify before 2.0.1; all versions of package html-parse-stringify2. Sending certain input could cause one of the regular expressions that is used for parsing to backtrack, freezing the process.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-545q-3fg6-48m7 for updates pertaining to this vulnerability.
Vendor References
- GHSA-545q-3fg6-48m7 -
github.com/advisories/GHSA-545q-3fg6-48m7
CVEs related to QID 982913
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-545q-3fg6-48m7 | html-parse-stringify |
|
|
| GHSA-545q-3fg6-48m7 | html-parse-stringify2 |
|