The package sanitize-html before 2.7.1 are vulnerable to Regular Expression Denial of Service (ReDoS) due to insecure global regular expression replacement logic of HTML comment removal.
{ "binaries": [ { "binary_version": "2.6.1-1", "binary_name": "node-sanitize-html" } ] }
{ "binaries": [ { "binary_version": "2.8.0+~2.6.2-1", "binary_name": "node-sanitize-html" } ] }
{ "binaries": [ { "binary_version": "6.4.13-5ubuntu0.1", "binary_name": "jupyter-notebook" }, { "binary_version": "6.4.13-5ubuntu0.1", "binary_name": "python3-notebook" } ], "availability": "No subscription required" }
{ "binaries": [ { "binary_version": "2.14.0+~2.13.0-1", "binary_name": "node-sanitize-html" } ] }
{ "binaries": [ { "binary_version": "6.4.13-5ubuntu0.1", "binary_name": "jupyter-notebook" }, { "binary_version": "6.4.13-5ubuntu0.1", "binary_name": "python3-notebook" } ] }
{ "binaries": [ { "binary_version": "6.4.8-1ubuntu0.1+esm1", "binary_name": "jupyter-notebook" }, { "binary_version": "6.4.8-1ubuntu0.1+esm1", "binary_name": "python3-notebook" } ], "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro" }
{ "binaries": [ { "binary_version": "6.4.12-2.2ubuntu1+esm1", "binary_name": "jupyter-notebook" }, { "binary_version": "6.4.12-2.2ubuntu1+esm1", "binary_name": "python3-notebook" } ], "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro" }