Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Regular Expression Denial of Service #44

Closed
aalejandromr opened this issue Jul 20, 2023 · 5 comments
Closed

Regular Expression Denial of Service #44

aalejandromr opened this issue Jul 20, 2023 · 5 comments

Comments

@aalejandromr
Copy link

Snyk has a security vulnerability report for word-wrap version 1.2.4 https://security.snyk.io/vuln/SNYK-JS-WORDWRAP-3149973

@bolt-io
Copy link

bolt-io commented Jul 20, 2023

1.2.3 had the vulnerability. It was fixed in #41 and version 1.2.4

@doowb
Copy link
Collaborator

doowb commented Jul 22, 2023

Correct, this is fixed in 1.2.4.

@snyk @lirantal when will this be updated?

@lirantal
Copy link

Thanks for the ping. I'll share with the security analysts team and get this looked at.

@lirantal
Copy link

This should be fixed @1.2.4 as of last Thursday, see here: https://security.snyk.io/vuln/SNYK-JS-WORDWRAP-3149973
Let me know if we're still missing anything.

@doowb
Copy link
Collaborator

doowb commented Jul 25, 2023

Thanks!

@doowb doowb closed this as completed Jul 25, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

4 participants