Skip to content

CVE-2021-35065 @ Npm-glob-parent-2.0.0 #176

@cx-svetlana-shur

Description

@cx-svetlana-shur

Vulnerable Package issue exists @ Npm-glob-parent-2.0.0 in branch main

glob-parent before 6.0.1 is vulnerable to Regular Expression Denial of Service (ReDoS).

Namespace: Svetlana-github
Repository: test
Repository Url: https://github.com/Svetlana-github/test
CxAST-Project: Svetlana-github/test
CxAST platform scan: 8821ba41-d324-41fa-8053-d13dfc156a43
Branch: main
Application: test
Severity: HIGH
State: NOT_IGNORED
Status: RECURRENT
CWE: CWE-400


Addition Info
Attack vector: NETWORK
Attack complexity: LOW
Confidentiality impact: NONE
Availability impact: HIGH
Remediation Upgrade Recommendation: 6.0.1


References
Advisory

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions