Asymmetric denial of service In ua-parser-js
Description
ua-parser-js Regular Expression Denial of Service vulnerability The package ua-parser-js before 0.7.23 are vulnerable to Regular Expression Denial of Service (ReDoS) in multiple regexes (see linked commit for more info).
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
debian 13 | 0.7.23+ds-1 | ||
debian 12 | 0.7.23+ds-1 | ||
npm | 0.7.23 | ||
debian 14 | 0.7.23+ds-1 |
Aliases
1. 2. 3. 4. 5. 6.
References
1. 2.