Vulnerabilities (CVE)

Filtered by vendor Path-parse Project Subscribe
Filtered by product Path-parse
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-23343 1 Path-parse Project 1 Path-parse 2024-11-21 5.0 MEDIUM 5.3 MEDIUM
All versions of package path-parse are vulnerable to Regular Expression Denial of Service (ReDoS) via splitDeviceRe, splitTailRe, and splitPathRe regular expressions. ReDoS exhibits polynomial worst-case time complexity.