A vulnerability was found in Braces versions prior to 2.3.1. Affected versions of this package are vulnerable to Regular Expression Denial of Service (ReDoS) attacks.
The product specifies a regular expression in a way that causes data to be improperly matched or compared.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Braces | Braces_project | * | 2.3.1 (excluding) |
Red Hat Quay 3 | RedHat | quay/quay-rhel8:v3.6.0-62 | * |
Node-braces | Ubuntu | artful | * |
Node-braces | Ubuntu | cosmic | * |
Node-braces | Ubuntu | disco | * |
Node-braces | Ubuntu | upstream | * |