We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
A comprehensive library for mime-type mapping
path: /tmp/git/obs-webserver/node_modules/mime/package.json
Library home page: https://registry.npmjs.org/mime/-/mime-1.4.1.tgz
Dependency Hierarchy:
Found in HEAD commit: 36b55b09ea5190c6c808841eba4681582e80dddd
The mime module is vulnerable to regular expression denial of service when a mime lookup is performed on untrusted user input.
Publish Date: 2018-06-07
URL: CVE-2017-16138
Base Score Metrics:
Step up your Open Source Security Game with WhiteSource here
The text was updated successfully, but these errors were encountered:
Same as overload-development-community/otl.gg#2.
Sorry, something went wrong.
expressjs is updated. Need to update this project's dependencies, then will mark this resolved.
Fixed in cfd070c.
No branches or pull requests
CVE-2017-16138 - High Severity Vulnerability
Vulnerable Library - mime-1.4.1.tgz
A comprehensive library for mime-type mapping
path: /tmp/git/obs-webserver/node_modules/mime/package.json
Library home page: https://registry.npmjs.org/mime/-/mime-1.4.1.tgz
Dependency Hierarchy:
Found in HEAD commit: 36b55b09ea5190c6c808841eba4681582e80dddd
Vulnerability Details
The mime module is vulnerable to regular expression denial of service when a mime lookup is performed on untrusted user input.
Publish Date: 2018-06-07
URL: CVE-2017-16138
CVSS 3 Score Details (7.5)
Base Score Metrics:
Step up your Open Source Security Game with WhiteSource here
The text was updated successfully, but these errors were encountered: