CVE-2021-33623
The trim-newlines package before 3.0.1 and 4.x before 4.0.1 for Node.js has an issue related to regular expression denial-of-service (ReDoS) for the .end() method.
- Affected products
- Linuxmint, Ubuntu, Trim-Newlines
- Trim-newlines Project Trim-newlines
- < 3.0.1, 4.0.1
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 2.9% (86th percentile)
- Weakness
- CWE-400
- NVD status
- Modified
- Published
- 2021-05-28
CVE-2021-33623 at NVD
1 known exploit for CVE-2021-33623
Proof-of-concept code and exploit modules indexed by Sploitus