N/A for ansi-regex
Per CVE-2021-3807, version of ansi-regex
except 5.0.1 and 6.0.1 are vulnerable to a ReDoS attack.
Per this comment, v2.1.1 is not affected as it uses a different regex (used by `pa11y-ci@2.4.2).
ansi-regex
v4.1.0 is used by jest-junit
, but only here to strip from failure messages as passed from jest
, so not a meaningful vulnerability.
Edited by Aaron Goldenthal