Vulnerabilities
Vulnerable Software
Ssri Project:  >> Ssri  Security Vulnerabilities
ssri 5.2.2-8.0.0, fixed in 8.0.1, processes SRIs using a regular expression which is vulnerable to a denial of service. Malicious SRIs could take an extremely long time to process, leading to denial of service. This issue only affects consumers using the strict option.
CVSS Score
7.5
EPSS Score
0.027
Published
2021-03-12
index.js in the ssri module before 5.2.2 for Node.js is prone to a regular expression denial of service vulnerability in strict mode functionality via a long base64 hash string.
CVSS Score
5.9
EPSS Score
0.004
Published
2018-03-04


Contact Us

Shodan ® - All rights reserved