Vendor
Semver Regex Project
Products
1
CVEs
2
Across products
2
Status
Private
Products
1- 2 CVEs
Recent CVEs
2| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-3795 | Hig | 0.42 | 7.5 | 0.01 | Sep 15, 2021 | semver-regex is vulnerable to Inefficient Regular Expression Complexity | ||
| CVE-2021-43307 | Med | 0.31 | 5.9 | 0.02 | Jun 2, 2022 | An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the semver-regex npm package, when an attacker is able to supply arbitrary input to the test() method |
- risk 0.42cvss 7.5epss 0.01
semver-regex is vulnerable to Inefficient Regular Expression Complexity
- risk 0.31cvss 5.9epss 0.02
An exponential ReDoS (Regular Expression Denial of Service) can be triggered in the semver-regex npm package, when an attacker is able to supply arbitrary input to the test() method