CVE-2021-36716: Improper Input Validation
(updated )
A ReDoS (regular expression denial of service) flaw was found in the Segment is-email package for Node.js. An attacker that is able to provide crafted input to the isEmail(input)
function may cause an application to consume an excessive amount of CPU.
References
Detect and mitigate CVE-2021-36716 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →