Skip to content

[GHSA-x5gf-qvw8-r2rm] pm2 Regular Expression Denial of Service vulnerability#7513

Open
corridormatt wants to merge 1 commit intocorridormatt/advisory-improvement-7513from
corridormatt-GHSA-x5gf-qvw8-r2rm
Open

[GHSA-x5gf-qvw8-r2rm] pm2 Regular Expression Denial of Service vulnerability#7513
corridormatt wants to merge 1 commit intocorridormatt/advisory-improvement-7513from
corridormatt-GHSA-x5gf-qvw8-r2rm

Conversation

@corridormatt
Copy link
Copy Markdown

@corridormatt corridormatt commented Apr 27, 2026

Updates

  • Affected products
  • CVSS v3
  • CVSS v4
  • Severity

Comments
Linked CVE shows 6.0.6 and github advisory text says 6.0.8. The issue data states <= 6.0.14. Two of these are wrong. The advisory info shows the latest version of pm2 is vulnerable, but e.g. snyk and the CVE page disagree. This issue contradicts its own texts.

@github-actions github-actions Bot changed the base branch from main to corridormatt/advisory-improvement-7513 April 27, 2026 23:32
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant