High severity7.5NVD Advisory· Published Sep 15, 2021· Updated Jun 17, 2026
CVE-2021-3777
CVE-2021-3777
Description
nodejs-tmpl is vulnerable to Inefficient Regular Expression Complexity
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
tmplnpm | < 1.0.5 | 1.0.5 |
Affected products
4- osv-coords2 versions
< 3.12.9.4-r20+ 1 more
- (no CPE)range: < 3.12.9.4-r20
- (no CPE)range: < 1.0.5
- daaku/daaku/nodejs-tmplv5Range: unspecified
Patches
Vulnerability mechanics
References
4- github.com/daaku/nodejs-tmpl/commit/4c654e4d1542f329ed561fd95ccd80f30c6872d6nvdPatchThird Party AdvisoryWEB
- huntr.dev/bounties/a07b547a-f457-41c9-9d89-ee48bee8a4dfnvdExploitIssue TrackingPatchThird Party AdvisoryWEB
- github.com/advisories/GHSA-jgrx-mgxx-jf9vghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2021-3777ghsaADVISORY
News mentions
0No linked articles in our index yet.