
bmeck/node-cookiejar
Releases14
Frequency7 months 1 week
Last Release
Stars122
Simple cookie library for node (not bound to request)
CVE History
| CVE | Published | CVSS v3 | CVSS v2 |
|---|---|---|---|
| 5.3 MEDIUM | — | ||
Versions of the package cookiejar before 2.1.4 are vulnerable to Regular Expression Denial of Service (ReDoS) via the Cookie.parse function, which uses an insecure regular expression. | |||