Details of Audit
On 17th August 2020, there was been a security issue that was raised with url-regex. Details are as follows:
High Regular Expression Denial of Service
Package url-regex
Patched in No patch available
Dependency of merge img
Path merge-img > jimp > url-regex
More info https://npmjs.com/advisories/1550
Update to jimp required where they need to switch to url-regex-safe:
jimp-dev/jimp#926
Replication Steps
Run npm audit
Notice the "high" severity vulnerability
Details of Audit
On 17th August 2020, there was been a security issue that was raised with
url-regex. Details are as follows:Update to
jimprequired where they need to switch tourl-regex-safe:jimp-dev/jimp#926
Replication Steps
Run npm audit
Notice the "high" severity vulnerability