jbgutierrez/path-parse

jbgutierrez/path-parse

Releases1
Frequency
Last Release
Stars56
Node.js path.parse() ponyfill

CVE History

CVEPublishedCVSS v3CVSS v2
5.3 MEDIUM5 MEDIUM

All versions of package path-parse are vulnerable to Regular Expression Denial of Service (ReDoS) via splitDeviceRe, splitTailRe, and splitPathRe regular expressions. ReDoS exhibits polynomial worst-case time complexity.