Book-Trading-Club
Book-Trading-Club copied to clipboard
WS-2017-0330 Medium Severity Vulnerability detected by WhiteSource
WS-2017-0330 - Medium Severity Vulnerability
Vulnerable Library - mime-1.3.4.tgz
A comprehensive library for mime-type mapping
path: /tmp/git/Book-Trading-Club/node_modules/mime/package.json
Library home page: http://registry.npmjs.org/mime/-/mime-1.3.4.tgz
Dependency Hierarchy:
- express-4.15.4.tgz (Root Library)
- send-0.15.4.tgz
- :x: mime-1.3.4.tgz (Vulnerable Library)
- send-0.15.4.tgz
Vulnerability Details
Affected version of mime (1.0.0 throw 1.4.0 and 2.0.0 throw 2.0.2), are vulnerable to regular expression denial of service.
Publish Date: 2017-09-27
URL: WS-2017-0330
CVSS 2 Score Details (5.0)
Base Score Metrics not available
Step up your Open Source Security Game with WhiteSource here