The package browserslist from 4.0.0 and before 4.16.5 are vulnerable to Regular Expression Denial of Service (ReDoS) during parsing of queries.
{ "cwe_ids": [ "CWE-1333", "CWE-400" ], "nvd_published_at": "2021-04-28T16:15:00Z", "github_reviewed_at": "2021-05-20T22:03:36Z", "github_reviewed": true, "severity": "MODERATE" }