All versions of sql-injection are vulnerable to Regular Expression Denial of Service. The package processes a request's body with regular expressions that may take exponentially longer to execute for large inputs.
No fix is currently available. Consider using an alternative package until a fix is made available.
{
"cwe_ids": [],
"github_reviewed_at": "2020-08-31T18:49:33Z",
"github_reviewed": true,
"severity": "HIGH",
"nvd_published_at": null
}