The riot-compiler version version 2.3.21 has an issue in a regex (Catastrophic Backtracking) thats make it unusable under certain conditions.
The product does not properly control the allocation and maintenance of a limited resource.
Weaknesses in this category are related to improper management of system resources.
Link | Tags |
---|---|
https://nodesecurity.io/advisories/86 | third party advisory |
https://github.com/riot/compiler/issues/46 | third party advisory |