Loading
The ms package before 0.7.1 for Node.js allows attackers to cause a denial of service (CPU consumption) via a long version string, aka a "regular expression denial of service (ReDoS)."
Use CWE-1333, Vercel vendor hub and Ms product page to widen CVE-2015-8315 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2017-20162 for nearby disclosures in the same product family.