Skip to content

Regular expression Denial of Service in date-and-time

High
knowledgecode published GHSA-r92x-f52r-x54g Dec 24, 2020

Package

npm date-and-time (npm)

Affected versions

< 0.14.2

Patched versions

0.14.2

Description

Impact

This issue may lead to a denial of service.

Patches

0.14.2

Workarounds

None

References

None

For more information

If you have any questions or comments about this advisory:

Severity

High

CVE ID

CVE-2020-26289

Weaknesses

No CWEs