expansión de llaves ( npm ) #169706
Replies: 1 comment
-
|
Hi @Decta-Cubitus, Thanks for being a part of the GitHub Community, we're glad you're here! If you're looking for help for this specific topic, you might want to try asking for help somewhere that focuses on this project, such as the project's / package's repository. It's possible that another GitHub user might have run into this same issue and can help, but the GitHub Community Discussions focuses primarily on topics related to GitHub itself or collaboration on project development and ideas. We want to make sure you’re getting the best support you can, but this space may not be the right place for this particular topic. Best of luck! |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
-
Select Topic Area
General
Body
Se encontró una vulnerabilidad en juliangruber brace-expansion hasta las versiones 1.1.11/2.0.1/3.0.0/4.0.0. Se ha clasificado como problemática. Este problema afecta a la función "expand" del archivo index.js. La manipulación genera una complejidad ineficiente en las expresiones regulares. El ataque puede ejecutarse remotamente. La complejidad del ataque es bastante alta. Se sabe que su explotación es difícil. El exploit se ha hecho público y podría utilizarse. Actualizar a las versiones 1.1.12, 2.0.2, 3.0.1 y 4.0.1 puede solucionar este problema. El parche se llama [nombre del archivo] a5b98a4f30d7813266b221435e1eaaf25a1b0ac5. Se recomienda actualizar el componente afectado.
Beta Was this translation helpful? Give feedback.
All reactions