Skip to content

minimatch has a ReDoS via repeated wildcards with non-matching literal in pattern #330

@4d4ch4u32

Description

@4d4ch4u32
yarn audit v1.22.22
┌───────────────┬──────────────────────────────────────────────────────────────┐
│ high          │ minimatch has a ReDoS via repeated wildcards with            │
│               │ non-matching literal in pattern                              │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Package       │ minimatch                                                    │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Patched in    │ >=10.2.1                                                     │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Dependency of │ @testing-library/vue                                         │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ Path          │ @testing-library/vue > @vue/test-utils > js-beautify >       │
│               │ editorconfig > minimatch                                     │
├───────────────┼──────────────────────────────────────────────────────────────┤
│ More info     │ https://www.npmjs.com/advisories/1113371                     │
└───────────────┴──────────────────────────────────────────────────────────────┘

Please visit https://www.npmjs.com/advisories/1113371 for details.

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions