A vulnerability was found in Braces versions 2.2.0 and above, prior to 2.3.1. Affected versions of this package are vulnerable to Regular Expression Denial of Service (ReDoS) attacks.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| braces(npm) | 2.2.0 | 2.3.1 | N/A |
CVSS Metrics