NodeJS/terser/3.14.0
JavaScript parser, mangler/compressor and beautifier toolkit for ES6+
https://www.npmjs.com/package/terser
BSD-2-Clause
1 Security Vulnerabilities
Terser insecure use of regular expressions leads to ReDoS
Published date: 2022-07-16T00:00:20Z
CVE: CVE-2022-25858
Links:
- https://nvd.nist.gov/vuln/detail/CVE-2022-25858
- https://github.com/terser/terser/commit/a4da7349fdc92c05094f41d33d06d8cd4e90e76b
- https://github.com/terser/terser/commit/d8cc5691be980d663c29cc4d5ce67e852d597012
- https://github.com/terser/terser/blob/master/lib/compress/evaluate.js%23L135
- https://snyk.io/vuln/SNYK-JAVA-ORGWEBJARSNPM-2949722
- https://snyk.io/vuln/SNYK-JS-TERSER-2806366
- https://github.com/advisories/GHSA-4wf5-vphf-c2xc
The package terser before 4.8.1, from 5.0.0 and before 5.14.2 are vulnerable to Regular Expression Denial of Service (ReDoS) due to insecure usage of regular expressions.
Affected versions:
["5.0.0", "5.1.0", "5.2.0", "5.2.1", "5.3.0", "5.3.1", "5.3.2", "5.3.3", "5.3.4", "5.3.5", "5.3.6", "5.3.7", "5.3.8", "5.4.0", "5.5.0", "5.5.1", "5.6.0-beta", "5.6.0", "5.6.1", "5.7.0", "5.7.1", "5.7.2", "5.8.0", "5.9.0", "5.10.0", "5.11.0", "5.12.0", "5.12.1", "5.13.0", "5.13.1", "5.14.0", "5.14.1", "1.0.0", "0.0.1", "3.7.1", "3.7.2", "3.7.3", "3.7.4", "3.7.5", "3.7.6", "3.7.7", "3.7.8", "3.8.0", "3.8.1", "3.8.2", "3.9.0", "3.9.1", "3.9.2", "3.9.3", "3.10.0", "3.10.1", "3.10.2", "3.10.3", "3.10.4", "3.10.5", "3.10.6", "3.10.7", "3.10.8", "3.10.9", "3.10.10", "3.10.11", "3.10.12", "3.10.13", "3.11.0", "3.12.0", "3.13.0", "3.13.1", "3.14.0-beta", "3.14.0", "3.14.1", "3.16.0", "3.16.1", "3.17.0", "4.0.0", "4.0.1", "4.0.2", "4.1.0", "4.1.1", "4.1.2", "4.1.3", "4.1.4", "4.2.0", "4.2.1", "4.3.0", "4.3.1", "4.3.2", "4.3.3", "4.3.4", "4.3.5", "4.3.6", "4.3.7", "4.3.8", "4.3.9", "4.3.10", "4.3.11", "4.4.0", "4.4.1", "4.4.2", "4.4.3", "4.5.0", "4.5.1", "4.6.0", "4.6.1", "4.6.2", "4.6.3", "4.6.4", "4.6.5", "4.6.6", "4.6.7", "4.6.8", "4.6.9", "4.6.10", "4.6.11", "4.6.12", "4.6.13", "4.7.0", "4.8.0"]
Secure versions:
[5.0.0-beta.0, 5.0.0-beta.1, 5.0.0-beta.2, 4.8.1, 5.14.2, 5.15.0, 5.15.1, 5.16.0, 5.16.1, 5.16.2, 5.16.3, 5.16.4, 5.16.5, 5.16.6, 5.16.8, 5.16.9, 5.17.0, 5.17.1, 5.17.2, 5.17.3, 5.17.4, 5.17.5, 5.17.6, 5.17.7, 5.18.0, 5.18.1, 5.18.2, 5.19.0, 5.19.1, 5.19.2, 5.19.3, 5.19.4, 5.20.0, 5.21.0, 5.22.0, 5.23.0, 5.24.0, 5.25.0, 5.26.0, 5.27.0, 5.27.1, 5.27.2, 5.28.0, 5.28.1, 5.29.0, 5.29.1, 5.29.2, 5.30.0, 5.30.1, 5.30.2, 5.30.3, 5.30.4, 5.31.0, 5.31.1, 5.31.2, 5.31.3, 5.31.4, 5.31.5, 5.31.6, 5.32.0, 5.33.0, 5.34.0, 5.34.1]
Recommendation:
Update to version 5.34.1.
180 Other Versions
Version | License | Security | Released | |
---|---|---|---|---|
4.6.10 | BSD-2-Clause | 1 | 2020-03-31 - 14:42 | over 4 years |
4.6.9 | BSD-2-Clause | 1 | 2020-03-30 - 22:00 | over 4 years |
4.6.8 | BSD-2-Clause | 1 | 2020-03-30 - 18:30 | over 4 years |
4.6.7 | BSD-2-Clause | 1 | 2020-03-17 - 14:29 | over 4 years |
4.6.6 | BSD-2-Clause | 1 | 2020-03-03 - 16:18 | over 4 years |
4.6.5 | BSD-2-Clause | 1 | 2020-03-03 - 13:17 | over 4 years |
4.6.4 | BSD-2-Clause | 1 | 2020-02-24 - 13:03 | over 4 years |
4.6.3 | BSD-2-Clause | 1 | 2020-01-13 - 18:10 | over 4 years |
4.6.2 | BSD-2-Clause | 1 | 2020-01-08 - 13:09 | over 4 years |
4.6.1 | BSD-2-Clause | 1 | 2020-01-06 - 22:42 | over 4 years |
4.6.0 | BSD-2-Clause | 1 | 2020-01-06 - 15:46 | over 4 years |
4.5.1 | BSD-2-Clause | 1 | 2020-01-02 - 19:21 | over 4 years |
4.5.0 | BSD-2-Clause | 1 | 2020-01-02 - 14:53 | over 4 years |
4.4.3 | BSD-2-Clause | 1 | 2019-12-16 - 22:51 | almost 5 years |
4.4.2 | BSD-2-Clause | 1 | 2019-12-02 - 15:44 | almost 5 years |
4.4.1 | BSD-2-Clause | 1 | 2019-12-01 - 13:55 | almost 5 years |
4.4.0 | BSD-2-Clause | 1 | 2019-11-10 - 17:42 | almost 5 years |
4.3.11 | BSD-2-Clause | 1 | 2019-11-10 - 13:22 | almost 5 years |
4.3.10 | BSD-2-Clause | 1 | 2019-11-10 - 00:03 | almost 5 years |
4.3.9 | BSD-2-Clause | 1 | 2019-10-15 - 13:57 | almost 5 years |
4.3.8 | BSD-2-Clause | 1 | 2019-10-05 - 22:37 | almost 5 years |
4.3.7 | BSD-2-Clause | 1 | 2019-10-05 - 13:57 | almost 5 years |
4.3.6 | BSD-2-Clause | 1 | 2019-10-04 - 20:04 | almost 5 years |
4.3.5 | BSD-2-Clause | 1 | 2019-10-04 - 19:55 | almost 5 years |
4.3.4 | BSD-2-Clause | 1 | 2019-09-28 - 16:28 | about 5 years |
4.3.3 | BSD-2-Clause | 1 | 2019-09-26 - 16:59 | about 5 years |
4.3.2 | BSD-2-Clause | 1 | 2019-09-24 - 12:16 | about 5 years |
4.3.1 | BSD-2-Clause | 1 | 2019-09-09 - 14:15 | about 5 years |
4.3.0 | BSD-2-Clause | 1 | 2019-09-07 - 20:07 | about 5 years |
4.2.1 | BSD-2-Clause | 1 | 2019-08-24 - 10:38 | about 5 years |
4.2.0 | BSD-2-Clause | 1 | 2019-08-19 - 16:39 | about 5 years |
4.1.4 | BSD-2-Clause | 1 | 2019-08-10 - 19:39 | about 5 years |
4.1.3 | BSD-2-Clause | 1 | 2019-08-02 - 22:44 | about 5 years |
4.1.2 | BSD-2-Clause | 1 | 2019-07-08 - 10:11 | about 5 years |
4.1.1 | BSD-2-Clause | 1 | 2019-07-08 - 09:25 | about 5 years |
4.1.0 | BSD-2-Clause | 1 | 2019-07-06 - 13:50 | about 5 years |
4.0.2 | BSD-2-Clause | 1 | 2019-06-30 - 21:22 | about 5 years |
4.0.1 | BSD-2-Clause | 1 | 2019-06-29 - 17:11 | about 5 years |
4.0.0 | BSD-2-Clause | 1 | 2019-05-19 - 20:30 | over 5 years |
3.17.0 | BSD-2-Clause | 1 | 2019-03-10 - 17:26 | over 5 years |
3.16.1 | BSD-2-Clause | 1 | 2019-02-04 - 11:53 | over 5 years |
3.16.0 | BSD-2-Clause | 1 | 2019-02-02 - 15:50 | over 5 years |
3.14.1 | BSD-2-Clause | 1 | 2019-01-03 - 21:57 | over 5 years |
3.14.0 | BSD-2-Clause | 1 | 2018-12-31 - 15:17 | over 5 years |
3.14.0-beta | BSD-2-Clause | 1 | 2018-12-29 - 15:34 | over 5 years |
3.13.1 | BSD-2-Clause | 1 | 2018-12-20 - 01:01 | almost 6 years |
3.13.0 | BSD-2-Clause | 1 | 2018-12-20 - 00:47 | almost 6 years |
3.12.0 | BSD-2-Clause | 1 | 2018-12-19 - 18:26 | almost 6 years |
3.11.0 | BSD-2-Clause | 1 | 2018-12-02 - 17:33 | almost 6 years |
3.10.13 | BSD-2-Clause | 1 | 2018-11-29 - 23:37 | almost 6 years |
3.10.12 | BSD-2-Clause | 1 | 2018-11-20 - 21:08 | almost 6 years |
3.10.11 | BSD-2-Clause | 1 | 2018-11-03 - 20:23 | almost 6 years |
3.10.10 | BSD-2-Clause | 1 | 2018-11-03 - 15:30 | almost 6 years |
3.10.9 | BSD-2-Clause | 1 | 2018-11-03 - 13:27 | almost 6 years |
3.10.8 | BSD-2-Clause | 1 | 2018-10-31 - 15:49 | almost 6 years |
3.10.7 | BSD-2-Clause | 1 | 2018-10-30 - 20:18 | almost 6 years |
3.10.6 | BSD-2-Clause | 1 | 2018-10-30 - 20:13 | almost 6 years |
3.10.5 | BSD-2-Clause | 1 | 2018-10-30 - 20:12 | almost 6 years |
3.10.4 | BSD-2-Clause | 1 | 2018-10-28 - 19:25 | almost 6 years |
3.10.3 | BSD-2-Clause | 1 | 2018-10-25 - 19:28 | almost 6 years |
3.10.2 | BSD-2-Clause | 1 | 2018-10-21 - 18:00 | almost 6 years |
3.10.1 | BSD-2-Clause | 1 | 2018-10-16 - 16:55 | almost 6 years |
3.10.0 | BSD-2-Clause | 1 | 2018-10-08 - 21:09 | almost 6 years |
3.9.3 | BSD-2-Clause | 1 | 2018-10-04 - 15:40 | almost 6 years |
3.9.2 | BSD-2-Clause | 1 | 2018-09-28 - 16:32 | about 6 years |
3.9.1 | BSD-2-Clause | 1 | 2018-09-27 - 17:42 | about 6 years |
3.9.0 | BSD-2-Clause | 1 | 2018-09-27 - 17:42 | about 6 years |
3.8.2 | BSD-2-Clause | 1 | 2018-08-27 - 15:17 | about 6 years |
3.8.1 | BSD-2-Clause | 1 | 2018-07-20 - 18:17 | about 6 years |
3.8.0 | BSD-2-Clause | 1 | 2018-07-17 - 12:40 | about 6 years |
3.7.8 | BSD-2-Clause | 1 | 2018-07-10 - 14:33 | about 6 years |
3.7.7 | BSD-2-Clause | 1 | 2018-07-05 - 12:46 | about 6 years |
3.7.6 | BSD-2-Clause | 1 | 2018-06-02 - 10:01 | over 6 years |
3.7.5 | BSD-2-Clause | 1 | 2018-05-17 - 14:02 | over 6 years |
3.7.4 | BSD-2-Clause | 1 | 2018-05-17 - 14:00 | over 6 years |
3.7.3 | BSD-2-Clause | 1 | 2018-05-17 - 12:54 | over 6 years |
3.7.2 | BSD-2-Clause | 1 | 2018-05-17 - 12:41 | over 6 years |
3.7.1 | BSD-2-Clause | 1 | 2018-05-17 - 12:37 | over 6 years |
1.0.0 | ISC | 1 | 2018-05-12 - 13:21 | over 6 years |
0.0.1 | BSD-2-Clause | 1 | 2018-05-17 - 11:56 | over 6 years |