All versions of package fast-string-search are vulnerable to Denial of Service (DoS) when computations are incorrect for non-string inputs. One can cause the V8 to attempt reading from non-permitted locations and cause a segmentation fault due to the violation.
{
"github_reviewed_at": "2022-06-20T22:35:46Z",
"nvd_published_at": "2022-06-17T20:15:00Z",
"cwe_ids": [
"CWE-400",
"CWE-682"
],
"severity": "HIGH",
"github_reviewed": true
}