CVE-2016-10527: Improper Input Validation
(updated )
The riot-compiler version has an issue in a regex (Catastrophic Backtracking) that make it unusable under certain conditions.
References
Detect and mitigate CVE-2016-10527 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →