Security
Headlines
HeadlinesLatestCVEs

Headline

GHSA-2j79-8pqc-r7x6: react-native-reanimated vulnerable to ReDoS

The package react-native-reanimated before 3.0.0-rc.1 is vulnerable to Regular Expression Denial of Service (ReDoS) due to improper usage of regular expression in the parser of Colors.js.

ghsa
#dos#js#git

react-native-reanimated vulnerable to ReDoS

High severity GitHub Reviewed Published Oct 1, 2022 • Updated Oct 4, 2022

Related news

CVE-2022-24373: Snyk Vulnerability Database | Snyk

The package react-native-reanimated before 3.0.0-rc.1 are vulnerable to Regular Expression Denial of Service (ReDoS) due to improper usage of regular expression in the parser of Colors.js.