Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Regular Expression Denial of Service (ReDoS)
Vulnerability Description
This affects all versions of package ansi-html. If an attacker provides a malicious string, it will get stuck processing the input for an extremely long time.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
N/A
Vulnerability Title
ansi-html安全漏洞
Vulnerability Description
ansi-html是NPM的一个优雅的库,可将粉笔(ANSI)文本转换为 HTML。 ansi-html 0.0.7及之前版本存在安全漏洞,如果攻击者利用该漏洞提供了一个恶意字符串,那么程序将在很长一段时间内卡住而无法处理输入。
CVSS Information
N/A
Vulnerability Type
N/A