index.js in the ssri module before 5.2.2 for Node.js is prone to a regular expression denial of service vulnerability in strict mode functionality via a long base64 hash string.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| ssri(npm) | 0 | 5.2.2 | N/A |
CVSS Metrics