Skip to content

word-wrap version change not available in NPM but available in Github | word-wrap vulnerable to Regular Expression Denial of Service #242

@Anushil98

Description

@Anushil98

The following link shows older version for word-wrap i.e version "word-wrap": "^1.0.3"

Image

The same package has been bumped in the latest master branch of the
cz-conventional-changelog

The older version has been flagged to have the following issue:

word-wrap vulnerable to Regular Expression Denial of Service

Reference:

GHSA-j8xg-fqg3-53r7

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions